Hard-coded Credentials Vulnerability in Zyxel Networks WAH7601
CVE-2026-6374

7.3HIGH

Key Information:

Status
Vendor
CVE Published:
10 August 2026

What is CVE-2026-6374?

A vulnerability in Zyxel Networks' WAH7601 device allows unauthorized access to sensitive constants within an executable due to hard-coded credentials. This security flaw can lead to potential exploitation by attackers, compromising sensitive data and system integrity. Users are urged to assess their systems and apply relevant security measures before the vulnerability's effective date.

Affected Version(s)

WAH7601 0 <= 20072026

References

CVSS V3.1

Score:
7.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Adjacent Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Hasan Egemen ERBAĹž
.