CVE-2026-44409

There is an an information disclosure vulnerability in ZTE MU5250. Due to improper configuration of the access control mechanism, attackers can obtain information without authorization, causing the risk of information disclosure.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:zte:mu5250_firmware:1.0.0b27:*:*:*:*:*:*:*
cpe:2.3:h:zte:mu5250:-:*:*:*:*:*:*:*

History

03 Jun 2026, 01:49

Type Values Removed Values Added
First Time Zte
Zte mu5250
Zte mu5250 Firmware
CWE CWE-862
CPE cpe:2.3:o:zte:mu5250_firmware:1.0.0b27:*:*:*:*:*:*:*
cpe:2.3:h:zte:mu5250:-:*:*:*:*:*:*:*
References () https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/3711746568357343342 - () https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/3711746568357343342 - Vendor Advisory

22 May 2026, 05:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-05-22 05:16

Updated : 2026-06-03 01:49


NVD link : CVE-2026-44409

Mitre link : CVE-2026-44409

CVE.ORG link : CVE-2026-44409


JSON object : View

Products Affected

zte

  • mu5250
  • mu5250_firmware
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor

CWE-862

Missing Authorization