CVE-2017-16523: Mitrastar DSL-100hn-t1 Firmware

Critical severity, CVSS 9.8. EPSS: 3.8% chance of exploitation in the next 30 days.

MitraStar GPT-2541GNAC (HGU) 1.00(VNJ0)b1 and DSL-100HN-T1 ES_113WJY0b16 devices have a zyad1234 password for the zyad1234 account, which is equivalent to root and undocumented.

Affected products

  • Mitrastar DSL-100hn-t1 Firmware: version es_113wjy0b16 only
  • Mitrastar Gpt-2541gnac Firmware: version 1.00(vnj0)b1 only

Published 2017-11-03. Last modified 2026-06-17.