


Perceptive Security
SOC/SIEM Consultancy

Access control failure means that an application does not effectively check user access permissions, so that unauthorized users can access system data beyond th…
Published:
26 mei 2026 om 22:00:00
Alert date:
27 mei 2026 om 20:13:41
Source:
nvd.nist.gov
Identity & Access, Network Infrastructure
CVE-2026-49002 describes an access control failure vulnerability that allows unauthorized users to bypass permission checks and access system data beyond their authorized scope. The vulnerability enables attackers to view and modify configuration information that should be restricted. This affects ZTE products and represents a significant security risk due to the potential for privilege escalation and unauthorized data access. The vulnerability has been assigned a high severity rating due to the potential impact on system security and data integrity.
Technical details
Mitigation steps:
Affected products:
ZTE
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2026-49002
https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/6783201397271515377
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
