{"id":"CVE-2026-86553","title":"SmartLife app dynamically generates fresh SmartLife application authentication parameters inside its runtime process","summary":"SmartLife app dynamically generates fresh SmartLife application authentication parameters inside its runtime process. Using the acquired SmartLife application authentication parameters, an attacker can directly call the backend interface…","severity":"high","cvss":8.8,"cvssVector":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","cwe":["CWE-269"],"vendor":"ZTE","product":"SmartLife","affected":["SmartLife ZTE_SL_V2.8.2_ABROAD and prior versions"],"published":"2026-09-20","updated":"2026-09-21","sourceUpdated":"2026-09-21T19:17:14.327","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-86553","references":[{"url":"https://support.zte.com.cn/zte-iccp-isupport-webui/bulletin/detail/2171542593031840100","label":"psirt@zte.com.cn"}],"tags":["nvd","cve.org"],"epss":0.00446,"epssPercentile":0.38035,"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"total","timestamp":"2026-09-21T18:10:11.751927Z"},"ingestedAt":"2026-09-20T04:13:53.005Z","slug":"CVE-2026-86553","body":"## Overview\n\nSmartLife app dynamically generates fresh SmartLife application authentication parameters inside its runtime process. Using the acquired SmartLife application authentication parameters, an attacker can directly call the backend interface /account/verify.serv to obtain the real account ID corresponding to a registered email address. By spoofing the application authentication information together with the target account ID, the attacker can reset the password of the target account.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":48,"depthScoreParts":{"impact":48.4,"likelihood":0.1,"exploitation":0,"ransomware":0},"changes":[{"seq":207953,"id":"CVE-2026-86553","ts":1789895977521,"field":"cvss","old":"8.5","new":"8.8"}]}