Vendor
critical
advisory
Unauthenticated RCE in Zbtlink Router Firmware
2 TTPs 1 CVEMultiple Zbtlink router models contain an unauthenticated command injection vulnerability in the infosrvd service, enabling root-level remote code execution via crafted UDP packets.
WE1326 +15
2t
1c
critical
advisory
Unauthenticated Backdoor in Zbtlink and MoreQuick Router Firmware
3 TTPs 1 CVEMultiple Zbtlink and MoreQuick router models contain an unauthenticated backdoor service, 'yunmgrd', which allows remote attackers to execute root commands and manipulate network traffic.
L3_V2_8 +14
3t
1c
high
advisory
ENDLESSDOORS Vulnerability Affecting Zbtlink Routers
1 TTPMultiple Zbtlink router models are susceptible to the ENDLESSDOORS root implant, which leverages the rctl remote control tool for unauthorized access and persistent phone-home capabilities.
CPE2801 Firmware +19
firmware-vulnerability
implant
router
network-security
informational
1t
critical
advisory
Zbtlink Router Firmware Contains Embedded ENDLESSDOORS Implant
3 TTPs 1 CVEZbtlink router firmware ships with the ENDLESSDOORS remote-control implant, which runs as root, masquerades as a kernel process, and enables unauthenticated remote command execution.
PoC
Router Firmware +20
supply-chain
firmware
backdoors
remote-access-trojan
network-security
3t
1c
updated