https://reddit.com/r/netsec/comments/1thjmen/cve202634473_preauth_zte_hseries_router_dos_via/: CVE-2026-34473: Pre-auth ZTE H-series router DoS via CGILua request-body parsing
Published May 19, 2026
·Updated
Affected Software
1 affected component
ZTE H-series router
Frequently Asked Questions
1
What is the severity of CVE-2026-34473?
CVE-2026-34473 is classified as a denial-of-service vulnerability affecting ZTE H-series routers.
2
How do I fix CVE-2026-34473?
To mitigate CVE-2026-34473, ensure that your ZTE H-series router firmware is updated to the latest version provided by ZTE.
3
Which devices are impacted by CVE-2026-34473?
CVE-2026-34473 specifically impacts ZTE H-series routers that utilize CGILua for request-body parsing.
4
What is the cause of the CVE-2026-34473 vulnerability?
The vulnerability in CVE-2026-34473 is caused by improper handling of large POST request bodies during CGILua parsing.
5
Can CVE-2026-34473 be exploited remotely?
Yes, CVE-2026-34473 can be exploited remotely without authentication, leading to a denial of service.