Product
critical
advisory
Unauthenticated RCE in Zbtlink Router Firmware
2 TTPs 1 CVEMultiple Zbtlink router models contain an unauthenticated command injection vulnerability in the infosrvd service, enabling root-level remote code execution via crafted UDP packets.
WE1326 +15
2t
1c
critical
advisory
Zbtlink Router Firmware Contains Embedded ENDLESSDOORS Implant
3 TTPs 1 CVEZbtlink router firmware ships with the ENDLESSDOORS remote-control implant, which runs as root, masquerades as a kernel process, and enables unauthenticated remote command execution.
PoC
Router Firmware +20
supply-chain
firmware
backdoors
remote-access-trojan
network-security
3t
1c
updated