CVE-2026-1803: Ziroom ZHOME A0101 Dropbear SSH Service default credentials
A weakness has been identified in Ziroom ZHOME A0101 1.0.1.0. Impacted is an unknown function of the component Dropbear SSH Service. This manipulation causes use of default credentials. Remote exploitation of the attack is possible. The complexity of an attack is rather high. The exploitability is considered difficult. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-1803?
CVE-2026-1803 is considered a high severity vulnerability due to the use of default credentials in the Dropbear SSH Service.
How do I fix CVE-2026-1803?
To fix CVE-2026-1803, change the default credentials of the Dropbear SSH Service to secure, unique passwords.
What are the risks of CVE-2026-1803?
The risks of CVE-2026-1803 include unauthorized remote access to the system due to weak authentication.
Which systems are affected by CVE-2026-1803?
CVE-2026-1803 affects the Ziroom ZHOME A0101 and the Dropbear SSH Service that runs on it.
Can CVE-2026-1803 be exploited remotely?
Yes, CVE-2026-1803 can be exploited remotely due to the use of default credentials.