ZTE MF971R product has a Referer authentication bypass vulnerability. Without CSRF verification, an attackercould use this vulnerability to perform illegal authorization operations by sending a request to the user to click.
View the template here CVE-2021-21745.yaml
References:
https://github.com/ARPSyndicate/kenzer-templates