CVE-2025-13942
- EPSS 0.18%
- Veröffentlicht 24.02.2026 02:32:18
- Zuletzt bearbeitet 25.02.2026 18:13:10
A command injection vulnerability in the UPnP function of the Zyxel EX3510-B0 firmware versions through 5.17(ABUP.15.1)C0 could allow a remote attacker to execute operating system (OS) commands on an affected device by sending specially crafted UPnP ...
CVE-2025-11847
- EPSS 0.03%
- Veröffentlicht 24.02.2026 02:09:44
- Zuletzt bearbeitet 25.02.2026 18:14:42
A null pointer dereference vulnerability in the IP settings CGI program of the Zyxel VMG3625-T50B firmware versions through 5.50(ABPM.9.6)C0 and the Zyxel WX3100-T0 firmware versions through 5.50(ABVL.4.8)C0 could allow an authenticated attacker with...
CVE-2025-11846
- EPSS 0.11%
- Veröffentlicht 24.02.2026 01:37:57
- Zuletzt bearbeitet 25.02.2026 18:14:24
A null pointer dereference vulnerability in the account settings CGI program of the Zyxel VMG3625-T50B firmware versions through 5.50(ABPM.9.6)C0 and the Zyxel WX3100-T0 firmware versions through 5.50(ABVL.4.8)C0 could allow an authenticated attacker...
CVE-2025-11845
- EPSS 0.12%
- Veröffentlicht 24.02.2026 01:30:50
- Zuletzt bearbeitet 25.02.2026 18:10:06
A null pointer dereference vulnerability in the certificate downloader CGI program of the Zyxel VMG3625-T50B firmware versions through 5.50(ABPM.9.6)C0 and the Zyxel WX3100-T0 firmware versions through 5.50(ABVL.4.8)C0 could allow an authenticated at...
CVE-2025-6599
- EPSS 0.08%
- Veröffentlicht 18.11.2025 01:19:47
- Zuletzt bearbeitet 16.12.2025 21:19:59
An uncontrolled resource consumption vulnerability in the web server of Zyxel DX3301-T0 firmware version 5.50(ABVY.6.3)C0 and earlier could allow an attacker to perform Slowloris‑style denial‑of‑service (DoS) attacks. Such attacks may temporarily blo...
CVE-2024-8748
- EPSS 0.73%
- Veröffentlicht 03.12.2024 02:15:17
- Zuletzt bearbeitet 21.01.2025 21:20:19
A buffer overflow vulnerability in the packet parser of the third-party library "libclinkc" in Zyxel VMG8825-T50K firmware versions through V5.50(ABOM.8.4)C0 could allow an attacker to cause a temporary denial of service (DoS) condition against the w...
CVE-2024-0816
- EPSS 0.09%
- Veröffentlicht 21.05.2024 02:15:08
- Zuletzt bearbeitet 22.01.2025 22:58:56
The buffer overflow vulnerability in the DX3300-T1 firmware version V5.50(ABVY.4)C0 could allow an authenticated local attacker to cause denial of service (DoS) conditions by executing the CLI command with crafted strings on an affected device.
CVE-2022-43391
- EPSS 1.42%
- Veröffentlicht 11.01.2023 02:15:11
- Zuletzt bearbeitet 25.02.2026 16:22:31
A buffer overflow vulnerability in the parameter of the CGI program in Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an authenticated attacker to cause denial-of-service (DoS) conditions by sending a crafted HTTP request.
CVE-2022-43392
- EPSS 0.56%
- Veröffentlicht 11.01.2023 02:15:11
- Zuletzt bearbeitet 25.02.2026 16:22:31
A buffer overflow vulnerability in the parameter of web server in Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an authenticated attacker to cause denial-of-service (DoS) conditions by sending a crafted authorization request.
CVE-2021-35036
- EPSS 0.15%
- Veröffentlicht 01.03.2022 07:15:06
- Zuletzt bearbeitet 21.11.2024 06:11:43
A cleartext storage of information vulnerability in the Zyxel VMG3625-T50B firmware version V5.50(ABTL.0)b2k could allow an authenticated attacker to obtain sensitive information from the configuration file.