There exists an openssl.cnf privilege escalation vulnerability in ZTE Cloud PC client uSmartview. An attacker can execute arbitrary code locally and escalate privileges.
References
| Link | Resource |
|---|---|
| https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/3126272076755775573 | Vendor Advisory |
Configurations
History
13 May 2026, 19:17
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/3126272076755775573 - Vendor Advisory | |
| CPE | cpe:2.3:a:zte:zxcloud_irai:*:*:*:*:*:*:*:* | |
| First Time |
Zte zxcloud Irai
Zte |
07 May 2026, 14:56
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-07 04:16
Updated : 2026-05-13 19:17
NVD link : CVE-2026-40004
Mitre link : CVE-2026-40004
CVE.ORG link : CVE-2026-40004
JSON object : View
Products Affected
zte
- zxcloud_irai
CWE
CWE-427
Uncontrolled Search Path Element
