ZTE Cloud PC client uSmartView是中国中兴通讯(ZTE)公司的一款云桌面远程访问客户端软件。 ZTE Cloud PC client uSmartView存在代码问题漏洞,该漏洞源于DLL劫持漏洞,由于uSmartViewServiceAgent.exe以SYSTEM权限运行,成功劫持可能导致本地任意代码执行、权限提升和内存损坏。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| ZTE | ZXCLOUD iRAI | ZXCLOUD-iRAI-ClientV7.2X |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| ZTE | ZXCLOUD iRAI | ZXCLOUD-iRAI-ClientV7.2X | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-40004 | 5.5 MEDIUM | openssl.cnf Privilege Escalation Vulnerability in ZTE Cloud PC Client uSmartview |
| CVE-2026-40003 | 5.1 MEDIUM | USB-based arbitrary memory write vulnerability in ZTE ZX297520V3 soc BootROM |
| CVE-2026-44407 | 4.7 MEDIUM | Remote Denial of Service Vulnerability Exists in ZTE Cloud PC Client uSmartview |
No comments yet