CVE-2014-4162
- EPSS 0.36%
- Published 16.06.2014 18:55:09
- Last modified 12.04.2025 10:46:40
Multiple cross-site request forgery (CSRF) vulnerabilities in the Zyxel P-660HW-T1 (v3) wireless router allow remote attackers to hijack the authentication of administrators for requests that change the (1) wifi password or (2) SSID via a request to ...
CVE-2013-3588
- EPSS 0.6%
- Published 02.04.2014 03:58:16
- Last modified 12.04.2025 10:46:40
The web management interface on Zyxel P660 devices allows remote attackers to cause a denial of service (reboot) via a flood of TCP SYN packets.
CVE-2008-1254
- EPSS 0.22%
- Published 10.03.2008 17:44:00
- Last modified 09.04.2025 00:30:58
Multiple cross-site request forgery (CSRF) vulnerabilities on the ZyXEL P-660HW series router allow remote attackers to (1) change DNS servers and (2) add keywords to the "bannedlist" via unspecified vectors.
- EPSS 0.34%
- Published 10.03.2008 17:44:00
- Last modified 09.04.2025 00:30:58
The ZyXEL P-660HW series router maintains authentication state by IP address, which allows remote attackers to bypass authentication by establishing a session from a source IP address of a previously authenticated user.
- EPSS 0.76%
- Published 10.03.2008 17:44:00
- Last modified 09.04.2025 00:30:58
The ZyXEL P-660HW series router has "admin" as its default password, which allows remote attackers to gain administrative access.
CVE-2008-1257
- EPSS 0.25%
- Published 10.03.2008 17:44:00
- Last modified 09.04.2025 00:30:58
Cross-site scripting (XSS) vulnerability in Forms/DiagGeneral_2 on the ZyXEL P-660HW series router allows remote attackers to inject arbitrary web script or HTML via the PingIPAddr parameter.