CVE-2026-7193

Summary

A vulnerability relating to the use of predefined credentials in the Dbit T-CPE301K 4G WiFi mini-router allows an attacker connected to the same network to gain full root access to the device via the Telnet service (port 23) using static credentials.

Affected Software

VendorProductVersion RangeStatus
Shenzhen Dbit Network EquipmentT-CPE301K 4G Mini WiFi Router0 < 29/09/2026affected

Weaknesses

  • CWE-798: CWE-798 Use of Hard-coded Credentials

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: total

References