CVE-2026-44408EPSS p26.3%

CVE-2026-44408CVE-2026-44408

Description

There is an unauthorized access vulnerability in ZTE MU5250. Due to improper permission control of the Web interface, an unauthorized attacker can  modify configuration through the interface.

Scoring

CVSS 6.3 ()
VectorCVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:H
EPSS0.35% probability of exploitation · percentile 26.3% · 2026-10-05T12:00:23Z
Last modified2026-07-24
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.