← Back to CVE List
Vulnerability Intelligence Report
Zbtlink MQWrt yunmgrd Cloud C2 Implant

CVE-2026-74232

Zbtlink L3_V2_8 firmware 3.0.0.4.528, Zbtlink WE826-T2 firmware 19.1101, Zbtlink ZBT-7628 firmware 1.0.0.2.007, Zbtlink ZBT-ZBT7621 firmware 1.0.0.3.001, MoreQuick MQAC-7620, MQAC-7620A, MQAP-7620, MQAP-7620A, and MQAP-7628 firmware 1.0.0.2.000, AP522 firmware 1.0.0.2.014, AP7628 and HC5661A firmware 3.0.0.4.380, APG721B firmware 19.0809, HK300 firmware 1.0.0.2.032, and MAP-N10 firmware 1.0.0.2.044 ship a backdoor command-and-control implant (yunmgrd) reachable over an unauthenticated cleartext UDP channel to a hardcoded C2 server. A remote unauthenticated attacker on the network path can hijack the channel and execute arbitrary commands as root. The attacker can also modify DNS entries, exfiltrate PPPoE credentials, and open reverse SSH tunnels.

No Active Exploit Signals
CVSS Base Score
9.3
CRITICAL
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Weaknesses (CWE)

CWE-506 ↗Embedded Malicious Code
CWE-300 ↗Channel Accessible by Non-Endpoint

Affected Products & Versions

Vendor Product Affected Versions
Zbtlink L3_V2_8 3.0.0.4.528 (affected)
Zbtlink WE826-T2 19.1101 (affected)
Zbtlink ZBT-7628 1.0.0.2.007 (affected)
Zbtlink ZBT-ZBT7621 1.0.0.3.001 (affected)
MoreQuick MQAC-7620 1.0.0.2.000 (affected)
MoreQuick MQAC-7620A 1.0.0.2.000 (affected)
MoreQuick MQAP-7620 1.0.0.2.000 (affected)
MoreQuick MQAP-7620A 1.0.0.2.000 (affected)
MoreQuick MQAP-7628 1.0.0.2.000 (affected)
Unknown AP522 1.0.0.2.014 (affected)
Unknown AP7628 3.0.0.4.380 (affected)
Unknown APG721B 19.0809 (affected)
Unknown HC5661A 3.0.0.4.380 (affected)
Unknown HK300 1.0.0.2.032 (affected)
Unknown MAP-N10 1.0.0.2.044 (affected)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityVulnCheck · Bug Bounty Provider · USA
Reserved2026-08-14T18:01:19
Published2026-08-27T10:39:14
Patch Date2026-08-27
Last Updated2026-08-27T14:49:10

LINK COPIED TO CLIPBOARD