Hardcoded Key Vulnerability in ZTE SmartLife Application
CVE-2026-86555
6.2MEDIUM
What is CVE-2026-86555?
The ZTE SmartLife application contains a vulnerability where a hardcoded encryption key is stored in plaintext within the codebase. This key is critical for decrypting account server information. If an attacker gains access to this hardcoded key, they can easily decrypt sensitive data associated with user accounts, leading to potential data breaches and unauthorized access to personal information.
Affected Version(s)
SmartLife ZTE_SL_V2.8.2_ABROAD and earlier versions
