Vulnerability index

Browse CVEs

275 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

P 660hw MEDIUM 6.8
CVE-2014-4162

Multiple cross-site request forgery (CSRF) vulnerabilities in the Zyxel P-660HW-T1 (v3) wireless router allow remote attackers to hijack the authenti…

No fix yet
Fix from $1,600 2014-06-16
N300 Netusb Nbg 419n Firmware HIGH 7.9
CVE-2014-0355

Multiple stack-based buffer overflows on the ZyXEL Wireless N300 NetUSB NBG-419N router with firmware 1.00(BFQ.6)C0 allow man-in-the-middle attackers…

Mitigation only
Fix from $1,950 2014-04-15
N300 Netusb Nbg 419n Firmware HIGH 7.9
CVE-2014-0356

The ZyXEL Wireless N300 NetUSB NBG-419N router with firmware 1.00(BFQ.6)C0 allows remote attackers to execute arbitrary code via shell metacharacters…

Mitigation only
Fix from $1,950 2014-04-15
N300 Netusb Nbg 419n Firmware HIGH 7.8
CVE-2014-0354

The ZyXEL Wireless N300 NetUSB NBG-419N router with firmware 1.00(BFQ.6)C0 has a hardcoded password of qweasdzxc for an unspecified account, which al…

Mitigation only
Fix from $1,950 2014-04-15
N300 Netusb Nbg 419n Firmware MEDIUM 6.1
CVE-2014-0353

The ZyXEL Wireless N300 NetUSB NBG-419N router with firmware 1.00(BFQ.6)C0 allows remote attackers to bypass authentication by using %2F sequences in…

Mitigation only
Fix from $1,600 2014-04-15
P 660h 61 HIGH 7.8
CVE-2013-3588

The web management interface on Zyxel P660 devices allows remote attackers to cause a denial of service (reboot) via a flood of TCP SYN packets.

Mitigation only
Fix from $1,950 2014-04-02
P 330w Router HIGH 9.3
CVE-2007-6730

Multiple cross-site request forgery (CSRF) vulnerabilities in the web management interface in the ZyXEL P-330W router allow remote attackers to hijac…

No fix yet
Fix from $1,950 2009-09-10
Prestige 660 HIGH 7.5
CVE-2008-1522

ZyXEL Prestige routers, including P-660 and P-661 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), have (1) "user" as their default password for…

Mitigation only
Fix from $1,950 2008-03-26
Prestige 660 HIGH 7.5
CVE-2008-1524

The SNMP service on ZyXEL Prestige routers, including P-660 and P-661 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), has "public" as its defau…

Mitigation only
Fix from $1,950 2008-03-26
P 663hn 51 Firmware HIGH 7.5
CVE-2008-1526

ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(PE9) and 3.40(AGD.2) through 3.40(AHQ.3), do not use a salt when …

Fix: after 3.40
Fix from $1,950 2008-03-26
Prestige 660 HIGH 7.5
CVE-2008-1527

ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(PE9) and 3.40(AGD.2) through 3.40(AHQ.3), support authentication …

Mitigation only
Fix from $1,950 2008-03-26
Prestige 660 MEDIUM 6.5
CVE-2008-1521

ZyXEL Prestige routers, including P-660 and P-661 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), allow remote authenticated users to gain priv…

Mitigation only
Fix from $1,600 2008-03-26
Prestige 660 MEDIUM 5.0
CVE-2008-1523

ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), allow remote authenticated users to o…

Mitigation only
Fix from $1,600 2008-03-26
Prestige 660 MEDIUM 5.0
CVE-2008-1525

The default SNMP configuration on ZyXEL Prestige routers, including P-660 and P-661 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), has a Trust…

Mitigation only
Fix from $1,600 2008-03-26
Prestige 660 MEDIUM 5.0
CVE-2008-1529

ZyXEL Prestige routers have a minimum password length for the admin account that is too small, which makes it easier for remote attackers to guess pa…

Mitigation only
Fix from $1,600 2008-03-26
Zywall 1050 Firmware CRITICAL 9.8
CVE-2008-1160EPSS 15%

ZyXEL ZyWALL 1050 has a hard-coded password for the Quagga and Zebra processes that is not changed when it is set by a user, which allows remote atta…

No fix yet
Fix from $2,300 2008-03-25
P 660hw HIGH 10.0
CVE-2008-1255

The ZyXEL P-660HW series router maintains authentication state by IP address, which allows remote attackers to bypass authentication by establishing …

Mitigation only
Fix from $1,950 2008-03-10
P 660hw HIGH 10.0
CVE-2008-1256

The ZyXEL P-660HW series router has "admin" as its default password, which allows remote attackers to gain administrative access.

Mitigation only
Fix from $1,950 2008-03-10
P 2602hw D1a HIGH 9.3
CVE-2008-1259

The Zyxel P-2602HW-D1A router with 3.40(AJZ.1) firmware maintains authentication state by IP address, which allows remote attackers to bypass authent…

No fix yet
Fix from $1,950 2008-03-10
P 660hw MEDIUM 6.8
CVE-2008-1254

Multiple cross-site request forgery (CSRF) vulnerabilities on the ZyXEL P-660HW series router allow remote attackers to (1) change DNS servers and (2…

No fix yet
Fix from $1,600 2008-03-10
P 2602hw D1a MEDIUM 5.0
CVE-2008-1261

The Zyxel P-2602HW-D1A router with 3.40(AJZ.1) firmware provides different responses to admin page requests depending on whether a user is logged in,…

Mitigation only
Fix from $1,600 2008-03-10
Zynos HIGH 7.8
CVE-2007-1586

ZynOS 3.40 allows remote attackers to cause a denial of service (link restart) by sending a request for the name \M via the SMB Mail Slot Protocol.

No fix yet
Fix from $1,950 2007-03-21
P 335wt Router HIGH 7.5
CVE-2006-2562

ZyXEL P-335WT router allows remote attackers to bypass access restrictions and conduct unauthorized operations via a UPnP request with a modified Int…

Mitigation only
Fix from $1,950 2006-05-24
P2000w Version 2 Voip Wifi Phone MEDIUM 5.0
CVE-2006-0302

ZyXel P2000W VoIP 802.11b Wireless Phone running firmware WV.00.02 allows remote attackers to obtain sensitive information, such as MAC address and s…

Mitigation only
Fix from $1,600 2006-01-19
P2000w Version 1 Voip Wifi Phone MEDIUM 6.4
CVE-2005-3724

Zyxel P2000W Version 1 VOIP WIFI Phone Wj.00.10 allows remote attackers to obtain sensitive information and possibly cause a denial of service via a …

Mitigation only
Fix from $1,600 2005-11-21
Prestige 2000w V.1voip Wi Fi Phone MEDIUM 6.4
CVE-2005-3725

Zyxel P2000W Version 1 VOIP WIFI Phone Wj.00.10 uses hardcoded IP addresses for its DNS servers, which could allow remote attackers to cause a denial…

Mitigation only
Fix from $1,600 2005-11-21
Prestige 650r 31 MEDIUM 5.0
CVE-2005-1717

ZyXEL Prestige 650R-31 router running ZyNOS FW v3.40(KO.1) allows remote attackers to cause a denial of service (CPU consumption and network loss) vi…

No fix yet
Fix from $1,600 2005-05-24
Prestige MEDIUM 5.0
CVE-2004-1540EPSS 7%

ZyXEL Prestige 623, 650, and 652 HW Routers, and possibly other versions, with HTTP Remote Administration enabled, does not require a password to acc…

No fix yet
Fix from $1,600 2004-12-31
Prestige MEDIUM 5.0
CVE-2004-1684

Zyxel P681 running ZyNOS Vt020225a contains portions of memory in an ARP request, which allows remote attackers to obtain sensitive information by sn…

Mitigation only
Fix from $1,600 2004-09-13
Prestige MEDIUM 5.0
CVE-2004-0670

Prestige 650HW-31 running Rompager 4.7 software allows remote attackers to cause a denial of service (device reboot) via a long password.

Mitigation only
Fix from $1,600 2004-08-06