
CVE-2026-40436 The ZTE ZXEDM iEMS product has a password reset vulnerability for any user.Because the management of the cloud EMS portal does not properly control access to the user… https://www.cve.org/CVERecord?id=CVE-2026-40436
Post summary
CVE‑2026‑40436 identifies a password‑reset flaw in ZTE ZXEDM iEMS’s cloud EMS portal caused by inadequate user access controls.


