A private key disclosure vulnerability exists in ZTE's ZXMP M721 product. A low-privileged user can bypass authorization checks to view the device's communication private key, resulting in key exposure and impacting communication security.
History

Mon, 27 Oct 2025 22:30:00 +0000

Type Values Removed Values Added
First Time appeared Zte
Zte zxmp M721
Vendors & Products Zte
Zte zxmp M721

Mon, 27 Oct 2025 16:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 27 Oct 2025 09:00:00 +0000

Type Values Removed Values Added
Description A private key disclosure vulnerability exists in ZTE's ZXMP M721 product. A low-privileged user can bypass authorization checks to view the device's communication private key, resulting in key exposure and impacting communication security.
Title Private Key Disclosure Vulnerability in ZTE ZXMP M721 Product
Weaknesses CWE-321
References
Metrics cvssV3_1

{'score': 7.7, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:N/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: zte

Published: 2025-10-27T08:44:49.704Z

Updated: 2025-10-27T15:58:25.984Z

Reserved: 2025-04-25T00:28:13.909Z

Link: CVE-2025-46582

cve-icon Vulnrichment

Updated: 2025-10-27T15:58:18.418Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-10-27T09:15:37.793

Modified: 2025-10-27T13:19:49.063

Link: CVE-2025-46582

cve-icon Redhat

No data.