Zyxel
zyxel
329 CVEs • 885 products
Products (885)
Click to collapseToggle
Products (885)
Click to collapse
CVEs (329)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
**UNSUPPORTED WHEN ASSIGNED** A path traversal vulnerability in the web management interface of the Zyxel AMG1302-T10B firmware version 2.00(AAJC.16)C0 could allow an authenticated attacker with administrator privileges...Show more |
An improper privilege management vulnerability in the recovery function of the Zyxel USG FLEX H series uOS firmware version V1.31 and earlier could allow an authenticated local attacker with administrator privileges to u...Show more |
An incorrect permission assignment vulnerability in the PostgreSQL commands of the Zyxel USG FLEX H series uOS firmware versions from V1.20 through V1.31 could allow an authenticated local attacker with low privileges to...Show more |
1Zyxel 41Ax7501 B0 Firmware Ax7501 B1 FirmwareDx3300 T0 Firmware+38 moreJun 17, 2026 Mar 11, 2025 N/A· v4 7.2 HIGH· v3 N/A· v2 A post-authentication command injection vulnerability in the ”zyUtilMailSend” function of the Zyxel AX7501-B1 firmware version V5.17(ABPC.5.3)C0 and earlier could allow an authenticated attacker with administrator privil...Show more |
1Zyxel 38Ax7501 B0 Firmware Ax7501 B1 FirmwareDx3300 T0 Firmware+35 moreJun 17, 2026 Mar 11, 2025 N/A· v4 7.2 HIGH· v3 N/A· v2 A post-authentication command injection vulnerability in the "ZyEE" function of the Zyxel EX5601-T1 firmware version V5.70(ACDZ.3.6)C0 and earlier could allow an authenticated attacker with administrator privileges to ex...Show more |
1Zyxel 6Dm4200 B0 Firmware Emg5723 T50k FirmwareVmg3927 T50k Firmware+3 moreJun 17, 2026 Mar 11, 2025 N/A· v4 7.2 HIGH· v3 N/A· v2 A post-authentication command injection vulnerability in the "DNSServer” parameter of the diagnostic function in the Zyxel VMG8825-T50K firmware version V5.50(ABOM.8.5)C0 and earlier could allow an authenticated attacker...Show more |
1Zyxel 14Sbg3300 N000 Firmware Sbg3300 Nb00 FirmwareSbg3500 N000 Firmware+11 moreJun 17, 2026 Feb 4, 2025 N/A· v4 9.8 CRITICAL· v3 N/A· v2 **UNSUPPORTED WHEN ASSIGNED** Insecure default credentials for the Telnet function in the legacy DSL CPE Zyxel VMG4325-B10A firmware version 1.00(AAFR.4)C0_20170615 could allow an attacker to log in to the management int...Show more |
1Zyxel 14Sbg3300 N000 Firmware Sbg3300 Nb00 FirmwareSbg3500 N000 Firmware+11 moreJun 17, 2026 Feb 4, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 **UNSUPPORTED WHEN ASSIGNED** A post-authentication command injection vulnerability in the management commands of the legacy DSL CPE Zyxel VMG4325-B10A firmware version 1.00(AAFR.4)C0_20170615 could allow an authenticate...Show more |
1Zyxel 14Sbg3300 N000 Firmware Sbg3300 Nb00 FirmwareSbg3500 N000 Firmware+11 moreJun 17, 2026 Feb 4, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 **UNSUPPORTED WHEN ASSIGNED** A post-authentication command injection vulnerability in the CGI program of the legacy DSL CPE Zyxel VMG4325-B10A firmware version 1.00(AAFR.4)C0_20170615 could allow an authenticated attack...Show more |
1Zyxel 23Nwa110ax Firmware Nwa1123acv3 FirmwareNwa130be Firmware+20 moreJun 17, 2026 Jan 14, 2025 N/A· v4 8.8 HIGH· v3 N/A· v2 An improper privilege management vulnerability in the web management interface of the Zyxel WBE530 firmware versions through 7.00(ACLE.3) and WBE660S firmware versions through 6.70(ACGG.2) could allow an authenticated us...Show more |
1Zyxel 6Emg6726 B10a Firmware Vmg3927 B50b FirmwareVmg4005 B50a Firmware+3 moreJun 17, 2026 Dec 3, 2024 N/A· v4 7.2 HIGH· v3 N/A· v2 A post-authentication command injection vulnerability in the "host" parameter of the diagnostic function in Zyxel VMG4005-B50A firmware versions through V5.15(ABQA.2.2)C0 could allow an authenticated attacker with admini...Show more |
1Zyxel 36Ax7501 B0 Firmware Ax7501 B1 FirmwareDx3300 T0 Firmware+33 moreJun 17, 2026 Dec 3, 2024 N/A· v4 4.9 MEDIUM· v3 N/A· v2 A post-authentication buffer overflow vulnerability in the parameter "action" of the CGI program in Zyxel VMG3625-T50B firmware versions through V5.50(ABPM.9.2)C0 could allow an authenticated attacker with administrator...Show more |
1Zyxel 63Ax7501 B0 Firmware Ax7501 B1 FirmwareDx3300 T0 Firmware+60 moreJun 17, 2026 Dec 3, 2024 N/A· v4 7.5 HIGH· v3 N/A· v2 A buffer overflow vulnerability in the packet parser of the third-party library "libclinkc" in Zyxel VMG8825-T50K firmware versions through V5.50(ABOM.8.4)C0 could allow an attacker to cause a temporary denial of service...Show more |
A directory traversal vulnerability in the web management interface of Zyxel ATP series firmware versions V5.00 through V5.38, USG FLEX series firmware versions V5.00 through V5.38, USG FLEX 50(W) series firmware version...Show more |
**UNSUPPORTED WHEN ASSIGNED** The improper authentication vulnerability in the Zyxel P-6101C ADSL modem firmware version P-6101CSA6AP_20140331 could allow an unauthenticated attacker to read some device information via a...Show more |
1Zyxel 10Gs1900 10hp Firmware Gs1900 16 FirmwareGs1900 24 Firmware+7 moreJun 17, 2026 Nov 12, 2024 N/A· v4 4.5 MEDIUM· v3 N/A· v2 A buffer overflow vulnerability in the CGI program in the Zyxel GS1900-48 switch firmware version V2.80(AAHN.1)C0 and earlier could allow an authenticated, LAN-based attacker with administrator privileges to cause denial...Show more |
1Zyxel 10Gs1900 10hp Firmware Gs1900 16 FirmwareGs1900 24 Firmware+7 moreJun 17, 2026 Nov 12, 2024 N/A· v4 6.8 MEDIUM· v3 N/A· v2 A post-authentication command injection vulnerability in the CGI program in the Zyxel GS1900-48 switch firmware version V2.80(AAHN.1)C0 and earlier could allow an authenticated, LAN-based attacker with administrator priv...Show more |
The insufficiently protected credentials vulnerability in the CLI command of the USG FLEX H series uOS firmware version V1.21 and earlier versions could allow an authenticated local attacker to gain privilege escalation...Show more |
1Zyxel 41Ax7501 B1 Firmware Dx3300 T0 FirmwareDx3300 T1 Firmware+38 moreJun 17, 2026 Sep 24, 2024 N/A· v4 4.9 MEDIUM· v3 N/A· v2 An improper restriction of operations within the bounds of a memory buffer in the USB file-sharing handler of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with adm...Show more |
1Zyxel 41Ax7501 B1 Firmware Dx3300 T0 FirmwareDx3300 T1 Firmware+38 moreJun 17, 2026 Sep 24, 2024 N/A· v4 4.9 MEDIUM· v3 N/A· v2 An improper restriction of operations within the bounds of a memory buffer in the MAC address parser of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administr...Show more |