← Back

CVE-2008-1524

nvd nist
Published: Mar 26, 2008Modified: Apr 23, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

The SNMP service on ZyXEL Prestige routers, including P-660 and P-661 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), has "public" as its default community for both (1) read and (2) write operations, which allows remote attackers to perform administrative actions via SNMP, as demonstrated by reading the Dynamic DNS service password or inserting an XSS sequence into the system.sysName.0 variable, which is displayed on the System Status page.

Affected (9)

3 products
Prestige 660
Prestige 661
Zynos
Configuration A
9 vulnerable
Vulnerable SoftwareAffected Versions
Zyxel
Version h-d1
Version h-d3
Version hw-d1
Zyxel
Version 3.40 agd.2
Version 3.40 agl.3
Version 3.40 ahq.0
Version 3.40 ahq.3
Version 3.40 ahz.0
Version 3.40 atm.0

Related CWEs

Timeline

No history available yet.