CVE-2026-44408
Deferred
Deferred - Pending Action
Unauthorized Configuration Modification in ZTE MU5250
Publication date: 2026-05-19
Last updated on: 2026-05-19
Assigner: ZTE Corporation
Description
Description
There is an unauthorized access vulnerability in ZTE MU5250. Due to improper permission control of the Web interface, an unauthorized attacker canΒ modify configuration through the interface.
CVSS Scores
EPSS Scores
| Probability: | |
| Percentile: |
Meta Information
Affected Vendors & Products
| Vendor | Product | Version / Range |
|---|---|---|
| zte | mu5250 | * |
Helpful Resources
Exploitability
| CWE ID | Description |
|---|---|
| CWE-200 | The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information. |