CVE-2015-7256
- EPSS 0.13%
- Published 28.09.2017 01:29:00
- Last modified 20.04.2025 01:37:25
ZyXEL NWA1100-N, NWA1100-NH, NWA1121-NI, NWA1123-AC, and NWA1123-NI access points; P-660HN-51, P-663HN-51, VMG1312-B10A, VMG1312-B30A, VMG1312-B30B, VMG4380-B10A, VMG8324-B10A, VMG8924-B10A, VMG8924-B30A, and VSG1435-B101 DSL CPEs; PMG5318-B20A GPONs...
CVE-2015-6020
- EPSS 0.21%
- Published 31.12.2015 05:59:18
- Last modified 12.04.2025 10:46:40
ZyXEL PMG5318-B20A devices with firmware 1.00AANC0b5 allow remote authenticated users to obtain administrative privileges by leveraging access to the user account.
CVE-2015-6019
- EPSS 0.33%
- Published 31.12.2015 05:59:17
- Last modified 12.04.2025 10:46:40
The management portal on ZyXEL PMG5318-B20A devices with firmware 1.00AANC0b5 does not terminate sessions upon a logout action, which allows remote attackers to bypass intended access restrictions by leveraging an unattended workstation.
- EPSS 22.08%
- Published 31.12.2015 05:59:16
- Last modified 12.04.2025 10:46:40
The diagnostic-ping implementation on ZyXEL PMG5318-B20A devices with firmware before 1.00(AANC.2)C0 allows remote attackers to execute arbitrary commands via the PingIPAddr parameter.
- EPSS 5.57%
- Published 31.12.2015 05:59:14
- Last modified 12.04.2025 10:46:40
ZyXEL P-660HW-T1 2 devices with ZyNOS firmware 3.40(AXH.0), PMG5318-B20A devices with firmware 1.00AANC0b5, and NBG-418N devices have a default password of 1234 for the admin account, which allows remote attackers to obtain administrative access via ...