Zte Router Firmware Update Tool Patched Jun 2026

If they are unaware of the patch, request a replacement router from a different manufacturer.

ZTE has released firmware updates to mitigate these risks. Security researchers strongly advise users to apply these patches immediately to prevent exploitation by botnets like Mirai. Product Model Primary Vulnerability ZXHN H188A Unauthenticated Credential Disclosure Patched (March 2026) Management Interface DoS Patched (March 2026) MC889A Pro SMS Interface DoS Patched (April 2026) Web Module Info Disclosure Patched (August 2025) How to Update Your Device zte router firmware update tool patched

The affected component is the embedded in ZTE routers, typically accessible at /cgi-bin/firmware_upgrade.cgi or similar endpoints. Researchers identified that before the patch, the tool: If they are unaware of the patch, request

Research into ZTE router firmware often focuses on several recurring types of security flaws that have been addressed in recent years: Vulnerability Type Affected Models Mitigation/Patch Info RCE (Remote Code Execution) Multiple (HTTPD-based) Patched in 2024 (CVE-2024-45413 to CVE-2024-45416) SQL Injection Go to product viewer dialog for this item. Updates released to validate SMS input Information Exposure ZXHN F670, E8820V3 Users are urged to check their device’s support

While ZTE has not released a complete public list, the issue is known to impact routers running firmware versions that rely on the vulnerable update client, including certain ZXHN and MF series models. Users are urged to check their device’s support page using their specific model number.