CRITICALVulnerability
Verified
Global

NVD CRITICAL: CVE-2026-102792 — A vulnerability was detected in Ziroom ZHOME A0101 1.0.1.0. This affects the fun...

·Source: NIST NVD

Updated:

Executive Summary

A vulnerability was detected in Ziroom ZHOME A0101 1.0.1.0. This affects the function set_syslog of the file /api/ZRnetwork/set_syslog. The manipulation of the argument conloglevel/log_size results in command injection. The attack may be performed from remote. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Analysis

A vulnerability was detected in Ziroom ZHOME A0101 1.0.1.0. This affects the function set_syslog of the file /api/ZRnetwork/set_syslog. The manipulation of the argument conloglevel/log_size results in command injection. The attack may be performed from remote. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. CVSS Score: 9.1. Published: 2026-09-29T23:17:21.267.

Indicators of Compromise (2)

CVE (1)
CVE-2026-102792
Source Attribution

Originally published by NIST NVD on Sep 29, 2026. Verified by: NIST.

Related Threats