---
id: CVE-2025-46583
title: There is a Denial of Service（DoS）vulnerability in the ZTE MC889A Pro product
summary: >-
  There is a Denial of Service（DoS）vulnerability in the ZTE MC889A Pro product.
  Due to insufficient validation of the input parameters of the Short Message
  Service interface, allowing an attacker to exploit it to carry out a DoS
  attack.
severity: medium
cvss: 5.3
cvssVector: 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L'
cwe:
  - CWE-116
published: '2025-10-27'
updated: '2026-10-08'
sourceUpdated: '2026-10-08T11:10:00.250'
source: NVD
sourceUrl: 'https://nvd.nist.gov/vuln/detail/CVE-2025-46583'
references:
  - url: >-
      https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/2594779029512220894
    label: psirt@zte.com.cn
tags:
  - nvd
epss: 0.00433
epssPercentile: 0.35555
ingestedAt: '2026-10-08T11:31:27.627Z'
---

## Overview

There is a Denial of Service（DoS）vulnerability in the ZTE MC889A Pro product. Due to insufficient validation of the input parameters of the Short Message Service interface, allowing an attacker to exploit it to carry out a DoS attack.

## Remediation

Refer to the linked advisories for vendor-supplied fixes and affected version ranges.
