CVE-2026-34473Disclosure

LOWCVSS 7.5 · HIGH

Exploit discussion active in current signal (1 latest mentions)

Immediate actions

  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft
  • Track advisory updates for patch or workaround availability

Recommended action window: High priority (within 72h)

NVD description

Unauthenticated DoS in ZTE H8102E, H168N, H167A, H199A, H288A, H198A, H267A, H267N, H268A, H388X, H196A, H369A, H268N, H208N, H367N, H181A, and H196Q. A denial-of-service condition can be triggered against the router's web interface by sending an oversized application/x-www-form-urlencoded POST body. After triggering, the management interface may become unresponsive until the device is rebooted. This may affect any firmware version prior to 2022 (reporter observation). The supplier stated that devices are not vulnerable since 2021-03-23; operator firmware may vary.

1.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-400

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

NONE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • 6 mentions across 5 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Technical details provided in 5 signals
  • Disclosure: 6 classified signals
  • Peaked 4d ago at 2 mentions (2026-05-07); latest day: 1
  • 6 total mentions across 5 days

Deep dive

Activity timeline6 mentions / 5d
01122Mentions · 2026-05-07: 2Mentions · 2026-05-08: 1Mentions · 2026-05-19: 1Mentions · 2026-05-31: 1Mentions · 2026-06-07: 1PoC Mentioned / Linked · 2026-05-19: 1Technical Details · 2026-05-07: 2Technical Details · 2026-05-08: 1Technical Details · 2026-05-19: 1Technical Details · 2026-05-31: 105-0705-0805-1905-3106-07
Signal classification1 categories
Disclosure
6100.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-05-072
Disclosure2
2026-05-081
Disclosure1
2026-05-191
Disclosure1
2026-05-311
Disclosure1
2026-06-071
Disclosure1
Full discourse6 posts
  • Red Secure Tech Ltd.@redsecuretech
    Disclosure

    A ZTE routers unauthenticated denial of service vulnerability (CVE-2026-34473) crashes web services with a single oversized POST request. https://www.redsecuretech.co.uk/blog/post/zte-routers-unauthenticated-dos-affects-140000-devices/1208 #ZTE #CVE #RouterSecurity #DenialOfService #Unauthenticated #CGILua #ISPSecurity #MonxResearch #IoTsecurity #InfoSec https://t.co/gwzVWFEFq6

    Post summary

    The tweet announces a ZTE router unauthenticated DoS vulnerability (CVE-2026-34473) that crashes web services using a single oversized POST request.

    01010216
    61 followersView on X
  • TeknoXpert@TeknoXpert
    Disclosure

    17+ Router ZTE Rentan! CVE-2026-34473 Bisa Ganggu Layanan Tanpa Login https://youtu.be/rGq7MmYdGxc?si=aQhbDd4UkfdskySq lewat @YouTube

    Post summary

    The post announces that ZTE routers are vulnerable to CVE-2026-34473, potentially disrupting services without requiring login, but provides no further technical or remediation details.

    00000195
    54 followersView on X
  • Mina Zekry@MonxResearch
    Disclosure

    I published a full technical breakdown for `CVE-2026-34473`, a pre-auth ZTE H-series router denial of service. https://minanagehsalalma.github.io/cve-2026-34473-unauthenticated-dos-zte-routers/

    Post summary

    The author posted a full technical breakdown of CVE-2026-34473, a pre‑authentication denial of service in ZTE H‑series routers, linking to a detailed analysis that likely includes a PoC, but no exploit code, active exploitation, or patch is mentioned.

    0000031
    3 followersView on X
  • Mina Zekry@MonxResearch
    Disclosure

    I went digging in ZTE ZXHN routers. Found 3 CVEs. Solo. No team. 🔴 CVE-2026-34472 — credential disclosure 🔴 CVE-2026-34473 — unauth DoS, 17 models hit 🔴 CVE-2026-34474 — admin + WLAN creds in plaintext Write-up coming soon. Open to vuln research / offsec roles. DMs open.

    Post summary

    The tweet announces three new CVEs affecting ZTE ZXHN routers, detailing credential disclosure, unauthenticated DoS, and plaintext admin/WLAN credentials, with a write-up to follow.

    0000092
    1 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-34473 Unauthenticated DoS in ZTE H8102E, H168N, H167A, H199A, H288A, H198A, H267A, H267N, H268A, H388X, H196A, H369A, H268N, H208N, H367N, H181A, and H196Q. A denial-of-ser… https://www.cve.org/CVERecord?id=CVE-2026-34473 ----- Traducción: CVE-2026-34473 Den… http://infoflow.cloud`

    Post summary

    The post announces a newly identified unauthenticated DoS vulnerability (CVE-2026‑34473) affecting multiple ZTE device models, providing basic technical details and a link to the CVE record.

    00000158
    75 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-34473 Unauthenticated DoS in ZTE H8102E, H168N, H167A, H199A, H288A, H198A, H267A, H267N, H268A, H388X, H196A, H369A, H268N, H208N, H367N, H181A, and H196Q. A denial-of-ser… https://www.cve.org/CVERecord?id=CVE-2026-34473

    Post summary

    The text announces CVE-2026-34473, an unauthenticated denial‑of‑service vulnerability affecting multiple ZTE router models, with a link to the CVE record.

    00000283
    57.4K followersView on X

Explore more