What is CVE-2026-66747?
This vulnerability involves the ENDLESSDOORS remote-control implant found in all Zbtlink router firmware builds, running as the 'kworker' process with root privileges at boot. It poses a full device compromise risk, requiring immediate firmware updates across all affected Zbtlink products.
Azərbaycanca: Bu boşluq Zbtlink marşrutlaşdırıcılarının bütün proqram təminatı quruluşlarında ENDLESSDOORS adlı gizli uzaqdan idarəetmə implantının mövcudluğunu aşkar edir. O, yükləmə zamanı 'kworker' prosesi altında root hüquqları ilə işə düşür, bu da cihazın tam ələ keçirilməsinə səbəb ola bilər. Təsirlənən cihazlarda bütün Zbtlink məhsulları daxildir, proqram təminatı yeniləmələri təcili tətbiq edilməlidir.
FAQ2
Which devices are affected by CVE-2026-66747?
This vulnerability affects all Zbtlink products, specifically Zbtlink routers with the ENDLESSDOORS implant present in their firmware builds.
Under what process does the ENDLESSDOORS implant run on an infected device?
The ENDLESSDOORS implant runs under the 'kworker' process with root privileges at boot.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.