EIP-2026-101071

PRE-CVE

Router ZTE-H108NS - Stack Buffer Overflow (DoS)

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-101071. PoCs published by George Tsimpidas.

AI-analyzed exploit summary This exploit demonstrates a stack buffer overflow vulnerability in ZTE-H108NS firmware by sending a maliciously crafted HTTP GET request with an oversized payload to the `/cgi-bin/tools_test.asp` endpoint, resulting in a denial-of-service (DoS) condition.

Description

Router ZTE-H108NS - Stack Buffer Overflow (DoS)

Exploits (1)

exploitdb WORKING POC
by George Tsimpidas · pythondoshardware
https://www.exploit-db.com/exploits/51137

This exploit demonstrates a stack buffer overflow vulnerability in ZTE-H108NS firmware by sending a maliciously crafted HTTP GET request with an oversized payload to the `/cgi-bin/tools_test.asp` endpoint, resulting in a denial-of-service (DoS) condition.

Classification
Working Poc 95%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: ZTE-H108NS firmware H108NSV1.0.7u_ZRD_GR2_A68
Auth required
Prerequisites: Network access to the target device · Valid credentials for authentication
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026