Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
zynos firmware vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2015-6016
ZyXEL P-660HW-T1 2 devices with ZyNOS firmware 3.40(AXH.0), PMG5318-B20A devices with firmware 1.00AANC0b5, and NBG-418N devices have a default password of 1234 for the admin account, which allows remote malicious users to obtain administrative access via unspecified vectors.
Zyxel Nbg-418n -
Zyxel Zynos Firmware 3.40\\(axh.0\\)
Zyxel Pmg5318-b20a Firmware V100aanc0b5
9.8
CVSSv3
CVE-2015-6018
The diagnostic-ping implementation on ZyXEL PMG5318-B20A devices with firmware prior to 1.00(AANC.2)C0 allows remote malicious users to execute arbitrary commands via the PingIPAddr parameter.
Zyxel Pmg5318-b20a Firmware
1 EDB exploit
8.5
CVSSv3
CVE-2015-6019
The management portal on ZyXEL PMG5318-B20A devices with firmware 1.00AANC0b5 does not terminate sessions upon a logout action, which allows remote malicious users to bypass intended access restrictions by leveraging an unattended workstation.
Zyxel Pmg5318-b20a Firmware V100aanc0b5
8
CVSSv3
CVE-2015-6020
ZyXEL PMG5318-B20A devices with firmware 1.00AANC0b5 allow remote authenticated users to obtain administrative privileges by leveraging access to the user account.
Zyxel Pmg5318-b20a Firmware V100aanc0b5
6.1
CVSSv3
CVE-2015-6017
Multiple cross-site scripting (XSS) vulnerabilities in Forms/rpAuth_1 on ZyXEL P-660HW-T1 2 devices with ZyNOS firmware 3.40(AXH.0) allow remote malicious users to inject arbitrary web script or HTML via the (1) LoginPassword or (2) hiddenPassword parameter.
Zyxel P-660hw-t1 V2 Firmware 3.40\\(axh.0\\)
NA
CVE-2008-1521
ZyXEL Prestige routers, including P-660 and P-661 models with firmware 3.40(AGD.2) up to and including 3.40(AHQ.3), allow remote authenticated users to gain privileges by accessing administrative URIs, as demonstrated by rpSysAdmin.html.
Zyxel Zynos 3.40
Zyxel Prestige 660 H-d1
Zyxel Prestige 660 H-d3
Zyxel Prestige 661 Hw-d1
NA
CVE-2008-1523
ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(AGD.2) up to and including 3.40(AHQ.3), allow remote authenticated users to obtain ISP and Dynamic DNS credentials by sending a direct request for (1) WAN.html, (2) wzPPPOE.html, and (3) rpDyDNS.h...
Zyxel Zynos 3.40
Zyxel Prestige 660 H-d1
Zyxel Prestige 660 H-d3
Zyxel Prestige 661 Hw-d1
NA
CVE-2008-1525
The default SNMP configuration on ZyXEL Prestige routers, including P-660 and P-661 models with firmware 3.40(AGD.2) up to and including 3.40(AHQ.3), has a Trusted Host value of 0.0.0.0, which allows remote malicious users to send SNMP requests from any source IP address.
Zyxel Prestige 660 H-d3
Zyxel Prestige 661 Hw-d1
Zyxel Zynos 3.40
Zyxel Prestige 660 H-d1
NA
CVE-2008-1527
ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(PE9) and 3.40(AGD.2) up to and including 3.40(AHQ.3), support authentication over HTTP via a hash string in the hiddenPassword field, which allows remote malicious users to obtain access via a rep...
Zyxel Prestige 660 H-d1
Zyxel Prestige 660 H-d3
Zyxel Zynos 3.40
Zyxel Prestige 661 Hw-d1
NA
CVE-2008-1522
ZyXEL Prestige routers, including P-660 and P-661 models with firmware 3.40(AGD.2) up to and including 3.40(AHQ.3), have (1) "user" as their default password for the "user" account and (2) "1234" as their default password for the "admin" ac...
Zyxel Zynos 3.40
Zyxel Prestige 660 H-d1
Zyxel Prestige 660 H-d3
Zyxel Prestige 661 Hw-d1
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-29895
blind SQL injection
CVE-2024-5064
CVE-2023-52677
CVE-2023-52682
CVE-2024-30051
CVE-2024-35849
remote attackers
remote
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »