Vulnerability Information - Vulnerability ID: - CVE ID: CVE-2023-41782 - CNNVD ID: CNNVD-2023-38032998 - CVSS 3.1 Base Score: 3.9 (Low) Description: - A DLL hijacking vulnerability enables an attacker to execute malicious code by placing a fake DLL file in a specific directory. Affected Products and Fixes: - ZXCLOUD iRAI - Affected Version: All versions up to V7.01.04P1_1104 - Resolved Version: V7.23.30 Version Update Method: - Devices that support automatic updates will receive a pop-up message; otherwise, contact the service provider for updates. Release Information: - Original Release Date: October 18, 2023 - Update Records: October 18, 2023, initial release Support Links: - Global Customer Support Center: http://support.zte.com.cn/support/web/Contact.aspx?_langType=en - ZTE PSIRT: https://www.zte.com.cn/global/cybersecurity/ztepsirt.html