CVE-2026-86551

The Z80Ultra (NX741J) product contains a vulnerability where non-privileged programs can retrieve the Wi-Fi MAC address by querying the read-only field factory_mac_address in the Settings.Secure database.

  • Published Sep 20, 2026
  • CVSS 3.3 low
  • 0.2% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-86551 at the National Vulnerability Database