CVE-2026-86551: Wi-Fi MAC Address Obtainment by Non-privileged Program Vulnerability in ZTE Z80Ultra (NX741J) product
Published Sep 20, 2026
·Updated
The Z80Ultra (NX741J) product contains a vulnerability where non-privileged programs can retrieve the Wi-Fi MAC address by querying the read-only field factorymacaddress in the Settings.Secure database.
Affected Software
1 affected component
ZTE Z80Ultra (NX741J)
Event History
Sep 20, 2026
CVE Published
via MITRE·01:55 AM
Data Sourced
via MITRE·01:55 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Who can access the affected value?
A non-privileged program can retrieve the Wi-Fi MAC address by querying the read-only factory_mac_address field in the Settings.Secure database.
2
What must an attacker do to exploit this issue?
The attacker needs to run or induce a non-privileged program on the Z80Ultra (NX741J) to query the factory_mac_address field. The provided data does not indicate that elevated privileges are required.
3
What information could be exposed?
The exposed information is the device's Wi-Fi MAC address. The supplied severity vector indicates low confidentiality impact and no stated integrity or availability impact.