CVE-2025-66314: ZTE Elasticnet Ume r32

High severity, CVSS 7.5. EPSS: 0.3% chance of exploitation in the next 30 days.

Improper Privilege Management vulnerability in ZTE ElasticNet UME R32 on Linux allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects ElasticNet UME R32: ElasticNet_UME_R32_V16.23.20.04.

Affected products

  • ZTE Elasticnet Ume r32

Published 2025-11-27. Last modified 2026-06-17.