ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(AGD.2) up to and including 3.40(AHQ.3), allow remote authenticated users to obtain ISP and Dynamic DNS credentials by sending a direct request for (1) WAN.html, (2) wzPPPOE.html, and (3) rpDyDNS.html, and then reading the HTML source.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
zyxel zynos 3.40 |
||
zyxel prestige 660 h-d1 |
||
zyxel prestige 660 h-d3 |
||
zyxel prestige 661 hw-d1 |