CVE-2024-22067: ZTE NH8091 Firmware

High severity, CVSS 8.8. EPSS: 0.7% chance of exploitation in the next 30 days.

ZTE NH8091 product has an improper permission control vulnerability. Due to improper permission control of the Web module interface, an authenticated attacker may exploit the vulnerability to execute arbitrary commands.

Affected products

  • ZTE NH8091 Firmware: version znh8091v1.8 only

Published 2024-11-18. Last modified 2026-06-17.