CVE-2026-12984Disclosure

LOWCVSS 8.2 · HIGH

Signal is active with 3 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

Insufficiently Protected Credentials vulnerability in Zyxel Networks WAH7601 allows Retrieve Embedded Sensitive Data. This issue affects WAH7601: through 20072026.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-522

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

NONE

Threat summary

  • 3 mentions across 1 observed day

What's happening

  • Technical details provided in 3 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Patch: 1 classified signal
  • 3 total mentions across 1 day

Deep dive

Activity timeline3 mentions / 1d
01223Mentions · 2026-08-10: 3Technical Details · 2026-08-10: 308-10
Signal classification3 categories
Disclosure
133.3%
General
133.3%
Patch
133.3%
Referenced assets3 URLs
Full discourse3 posts
  • ThreatAft@ThreatAft
    Patch

    🚨 Zyxel WAH7601 4-CVE Bundle — NO PATCH CVE-2026-13206 (9.8): Unauthenticated RCE CVE-2026-12984 (8.2): Credential exposure CVE-2026-6374 (7.3): Hardcoded creds CVE-2026-6373 (6.5): Info disclosure → http://threataft.com/articles/zyxel-wah7601-4-cve-bundle #cybersecurity #Zyxel #RouterSecurity #ThreatIntel

    Post summary

    Four CVEs affecting Zyxel WAH7601—an unauthenticated RCE, credential exposure, hardcoded credentials, and information disclosure—are highlighted, with the tweet indicating no patch is available as of the reporting.

    0000063
    36 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-12984 Insufficiently Protected Credentials vulnerability in Zyxel Networks WAH7601 allows Retrieve Embedded Sensitive Data. This issue affects WAH7601: through 20072026. https://www.cve.org/CVERecord?id=CVE-2026-12984 ----- Traducción: CVE-2026-12984 Vulnera… http://infoflow.cloud`

    Post summary

    CVE-2026-12984 is a disclosed credential protection issue in Zyxel WAH7601 routers that could allow retrieval of embedded sensitive data, with no PoC, exploit, or patch details provided.

    0000031
    98 followersView on X
  • CVE@CVEnew
    General

    CVE-2026-12984 Insufficiently Protected Credentials vulnerability in Zyxel Networks WAH7601 allows Retrieve Embedded Sensitive Data. This issue affects WAH7601: through 20072026. https://www.cve.org/CVERecord?id=CVE-2026-12984

    Post summary

    The text cites CVE-2026-12984, noting it is an insufficiently protected credentials vulnerability in Zyxel WAH7601 that could allow retrieval of embedded sensitive data, but no PoC, exploit, patch, or active exploitation details are provided.

    00000771
    57.9K followersView on X

Explore more