PT-2025-17481 · Zyxel · Zyxel Amg1302-T10B

Jiangxiazhe

·

Published

2025-04-22

·

Updated

2025-06-23

·

CVE-2025-3577

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Zyxel AMG1302-T10B version 2.00(AAJC.16)C0
Description A path traversal vulnerability in the web management interface could allow an authenticated attacker with administrator privileges to access restricted directories by sending a crafted HTTP request to an affected device.
Recommendations For Zyxel AMG1302-T10B version 2.00(AAJC.16)C0, consider restricting access to the web management interface until a fix is available. As a temporary workaround, restrict access to sensitive directories to minimize the risk of exploitation. Avoid using the web management interface for administrative tasks until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Path traversal

Weakness Enumeration

Related Identifiers

BDU:2025-05678
CVE-2025-3577

Affected Products

Zyxel Amg1302-T10B