HIGHCVE-2026-49000Published Modified CNA zte
CVE-2026-49000: Cryptography Implementation Flaw vulnerability in ZTE ZXUniPOS NDS-LTE product
An insecure password scheme refers to vulnerabilities arising from improper selection of encryption algorithms, inadequate key management, or flawed code implementation, which may lead to data leakage or tampering, such as hard-coded keys or the use of weak encryption algorithms.
Metrics
- CVSS v3.1
- 7.0
- Severity
- HIGH
- Fixed in
- —
- Affected Products
- 1
Affected packages
- ZTE / ZXUniPOS NDS-LTEVersions < V24.40.40CP01 (excluding V24.30.40CP03, V24.40.40CP01)
CVSS Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:LReferences