Attackers can exploit command injection vulnerabilities to delete core system runtime files, causing the monitoring module to crash and become paralyzed; simultaneously, they can obtain root privileges to steal configuration passwords such as SNMP, thereby tampering with critical system parameters and triggering abnormal operation of the entire power system.
Project Subscriptions
No data.
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Mon, 31 Aug 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Attackers can exploit command injection vulnerabilities to delete core system runtime files, causing the monitoring module to crash and become paralyzed; simultaneously, they can obtain root privileges to steal configuration passwords such as SNMP, thereby tampering with critical system parameters and triggering abnormal operation of the entire power system. | |
| Title | Unauthenticated RCE Vulnerability in ZTE ZXDU68 S202 V5.0 Product | |
| Weaknesses | CWE-287 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: zte
Published:
Updated: 2026-08-31T10:30:01.649Z
Reserved: 2026-05-27T01:01:53.326Z
Link: CVE-2026-49003
No data.
Status : Received
Published: 2026-08-31T10:16:49.963
Modified: 2026-08-31T10:16:49.963
Link: CVE-2026-49003
No data.
OpenCVE Enrichment
No data.
Weaknesses