PT-2026-38218 · Zte · H108N+1

Minanagehsalalma

·

Published

2026-05-06

·

Updated

2026-05-21

·

CVE-2026-34474

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions ZTE ZXHN H298A version 1.1 ZTE H108N version 2.6
Description A crafted request to the router web interface can cause sensitive data exposure. This issue may leak device and account information, including the administrator password and WLAN Pre-Shared Key (PSK), which can lead to authentication bypass and network compromise. In some firmware versions, the exposure may be limited to partial identifiers such as the serial number, ESSID, and MAC addresses.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-34474

Affected Products

H108N
Zxhn H298A