KEV Entry
CVE-2026-74232
Known Exploited Vulnerability Entry ENISA
Entry Details
Confirmed Exploited2026-08-27 02:00 CEST
Timestamps
2026-08-27
2026-08-27
Scope
Affected: Zbtlink / Various | Description: Zbtlink firmware ships with a backdoor command-and-control implant (yunmgrd) reachable over an unauthenticated cleartext UDP channel to a hardcoded C2 server. | Exploitation type: unknown | CWEs: CWE-300, CWE-506 | Origin source: ENISA | Notes: https://www.vulncheck.com/blog/zbt-darklantern-speakingstone
References
- {'id': 'CVE-2026-74232', 'url': 'https://www.cve.org/CVERecord?id=CVE-2026-74232'}
- {'id': 'EUVD-2026-66999', 'url': 'https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-66999'}
- {'id': 'source', 'url': 'https://www.vulncheck.com/blog/zbt-darklantern-speakingstone'}
052e6ddf-44ae-4458-8517-07877f108480
ENISA
cce329bf-df49-4c6e-a027-80be2e6483bd
2026-10-02 08:52 CEST
2026-10-02 08:52 CEST
Evidence
1| Type | Source | Signal | Confidence | Details | GCVE Metadata |
|---|---|---|---|---|---|
| csirt_report | enisa-cnw-kev | successful_exploitation | 0.75 |
View details
|
- |