CVE Vulnerabilities

CVE-2025-46582

Use of Hard-coded Cryptographic Key

Published: Oct 27, 2025 | Modified: Oct 27, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu

A private key disclosure vulnerability exists in ZTEs ZXMP M721 product. A low-privileged user can bypass authorization checks to view the devices communication private key, resulting in key exposure and impacting communication security.

Weakness

The product uses a hard-coded, unchangeable cryptographic key.

Potential Mitigations

References