ZyXEL P-660HW-T1 2 devices with ZyNOS firmware 3.40(AXH.0), PMG5318-B20A devices with firmware 1.00AANC0b5, and NBG-418N devices have a default password of 1234 for the admin account, which allows remote attackers to obtain administrative access via unspecified vectors.
CVSS Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HZyxel Nbg 418n
HWZyxelall versionsZyxel P 660hw T1 2
HWZyxelall versionsZyxel Pmg5318 B20a Firmware
OSZyxelv100aanc0b5Zyxel Zynos Firmware
OSZyxel3.40\(axh.0\)
🔵
CHECK WITH VENDOR
No clear patch data available. Check vendor references.
CWE
Related vulnerabilities
CVE-2015-6018CRITICAL9.8PL ✓same product
Command injection w ZyXEL PMG5318-B20A — RCE przez parametr PingIPAddr
CVE-2023-22922HIGH7.5same product
A buffer overflow vulnerability in the Zyxel NBG-418N v2 firmware versions prior to V1.00(AARP.14)C0 could all...
CVE-2023-22921HIGH7.5same product
A cross-site scripting (XSS) vulnerability in the Zyxel NBG-418N v2 firmware versions prior to V1.00(AARP.14)C...
CVE-2019-6710HIGH8.8same product
Zyxel NBG-418N v2 v1.00(AAXM.4)C0 devices allow login.cgi CSRF.
CVE-2015-6020HIGH8.0same product
ZyXEL PMG5318-B20A devices with firmware 1.00AANC0b5 allow remote authenticated users to obtain administrative...