CVE-2026-44408: Unauthorized access vulnerability in ZTE MU5250
Published May 19, 2026
·Updated
There is an unauthorized access vulnerability in ZTE MU5250. Due to improper permission control of the Web interface, an unauthorized attacker can modify configuration through the interface.
Affected Software
1 affected component
ZTE MU5250
Event History
May 19, 2026
CVE Published
via MITRE·07:45 AM
Data Sourced
via MITRE·07:45 AM
DescriptionSeverityWeakness
Data Sourced
via NVD·09:16 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-44408?
CVE-2026-44408 is identified as a high severity vulnerability due to the potential for unauthorized access.
2
How can I fix CVE-2026-44408?
To fix CVE-2026-44408, ensure that permission controls are correctly configured on the ZTE MU5250 Web interface.
3
What systems are affected by CVE-2026-44408?
CVE-2026-44408 affects the ZTE MU5250 device specifically.
4
What type of attacks can occur due to CVE-2026-44408?
Due to CVE-2026-44408, an unauthorized attacker could modify device configurations through the insecure Web interface.
5
Is there a patch available for CVE-2026-44408?
As of now, there is no publicly available patch for CVE-2026-44408; users should monitor updates from ZTE.