CVE-2026-44409: ZTE MU5250 Firmware

High severity, CVSS 7.5. EPSS: 0.4% chance of exploitation in the next 30 days.

There is an an information disclosure vulnerability in ZTE MU5250. Due to improper configuration of the access control mechanism, attackers can obtain information without authorization, causing the risk of information disclosure.

Affected products

  • ZTE MU5250 Firmware: version 1.0.0b27 only

Published 2026-05-22. Last modified 2026-07-23.