CVE-2026-49005

Summary

The root password hash of the device can be obtained through unencrypted information in the firmware.

Affected Software

VendorProductVersion RangeStatus
ZTEF689ZXHN F680V9.0.10P6N1,ZXHN F680V9.0.10P4N4,ZXHN F680V9.0.10P4N5,ZXHN F680V9.0.10P4N9,ZXHN F680V9.0.10P4N10,ZXHN F680V9.0.10P1N12,ZXHN F680V9.0.10P1N13affected

Weaknesses

  • CWE-916: CWE-916 Use of password hash with insufficient computational effort

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References