Zte F680 Exploit
Recent 2024 advisories have identified stack-based buffer overflows in the HTTPD binary of multiple ZTE routers. This occurs in the check_data_integrity function when it fails to validate checksums before storing them on the stack, potentially allowing an unauthenticated attacker to gain root-level RCE .
: Tests if an HTTP proxy (like Burp Suite ) can bypass character length limits for WAN connection names to inject longer, potentially malicious payloads into the backend. zte f680 exploit