🔙 목록으로 돌아가기

CVE-2021-21745: ZTE MF971R - Referer authentication bypass

TitleZTE MF971R - Referer authentication bypass
Authorgy741
SeverityMedium
ImpactAn attacker can bypass authentication and gain unauthorized access to the router.
RemediationApply the latest firmware update provided by ZTE to fix the authentication bypass vulnerability.
CVSS Score4.3
EPSS Score0.40585
CVE IDCVE-2021-21745
CWE IDCWE-352
Tags cve2021 cve zte auth-bypass router vkev vuln

🔍 Vulnerability Description

ZTE MF971R product has a Referer authentication bypass vulnerability. Without CSRF verification, an attackercould use this vulnerability to perform illegal authorization operations by sending a request to the user to click.

🌐 HTTP Request

GET /goform/goform_get_cmd_process?cmd=psw_fail_num_str HTTP/1.1
Host: www.victim.com
User-Agent: Mozilla/5.0 (X11; Linux x86_64) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/133.0.0.0 Safari/537.36
Connection: close
Referer: http://interact.sh/127.0.0.1.html
Accept-Encoding: gzip

📚 References


🔗 Nuclei Template: https://github.com/packetinside/nuclei-templates/blob/main/http/cves/2021/CVE-2021-21745.yaml

🦈 Packet Capture: ⬇️ Download cve-2021-21745.pcap

⚠️ Notice: These rules are for detection purposes. Please tune them before applying to a production environment.
Snort 2 Rule
N/A
Snort 3 Rule
N/A