CVE-2024-10119: ZTE WRTM326 Firmware

Critical severity, CVSS 9.8. EPSS: 1% chance of exploitation in the next 30 days.

The wireless router WRTM326 from SECOM does not properly validate a specific parameter. An unauthenticated remote attacker could execute arbitrary system commands by sending crafted requests.

Affected products

  • ZTE WRTM326 Firmware: up to and including 2.3.20

Published 2024-10-18. Last modified 2026-06-17.