Did anybody actually **confirm** this?
I looked at the [httpd](https://www.virustotal.com/gui/file/45aafa2329568c3794f2cded46bb82542756fdd6f330b840b2a7cbe9290eb8e9 ) in US_AC6V2.0RTL_V15.03.06.51_multi_TDE01, which presumably what the CERT/CC typo'd to get the US_AC6V2.0RTL_V15.03.06.51_multi_T in their advisory.
There are plenty of GetValue() calls, but not a single GetValue("sys.rzadmin.password") in the bunch. Or even a single instance of the rzadmin string anywhere in the binary.
