Retour à la veille

CVE-2026-86555

Publié : 20 septembre 2026
Modifié : 20 septembre 2026
Lien officiel NVD
Score CVSS
6.2
MEDIUM

Description détaillée

The ZTE SmartLife application has a hardcoded key. The key used to decrypt account server information is stored in plaintext in the code. Once the key is obtained, the server information can be decrypted, thus exposing it.

Vecteur d'attaque (CVSS)

Vecteur brut :CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Références et Patchs