CVE-2026-49007

Summary

By accessing unencrypted information in the device firmware, an attacker can obtain the initial login credentials for the device's web interface.

Affected Software

VendorProductVersion RangeStatus
ZTEF689ZXHN F680V9.0.10P6N1,ZXHN F680V9.0.10P4N4,ZXHN F680V9.0.10P4N5,ZXHN F680V9.0.10P4N9,ZXHN F680V9.0.10P4N10,ZXHN F680V9.0.10P1N12,ZXHN F680V9.0.10P1N13affected

Weaknesses

  • CWE-798: CWE-798 Common Weakness Enumeration-798

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: yes
    • Technical Impact: partial

References