First published: Fri Mar 07 2025(Updated: )
There is a configuration defect vulnerability in ZTELink 5.4.9 for iOS. This vulnerability is caused by a flaw in the WiFi parameter configuration of the ZTELink. An attacker can obtain unauthorized access to the WiFi service.
Credit: psirt@zte.com.cn
Affected Software | Affected Version | How to fix |
---|---|---|
ZTE ZTELink |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-26708 is considered a medium severity vulnerability due to its potential for unauthorized access to the WiFi service.
To fix CVE-2025-26708, ensure that the WiFi parameter configuration in ZTELink 5.4.9 is properly secured and not using default settings.
CVE-2025-26708 affects version 5.4.9 of the ZTE ZTELink application for iOS.
An attacker who exploits CVE-2025-26708 can gain unauthorized access to WiFi services, potentially intercepting data transmitted over the network.
CVE-2025-26708 was disclosed recently, highlighting a critical flaw in the WiFi configuration of the ZTELink application.