Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-48311 | A vulnerability exists in the FTP server of the Zyxel AX7501-B0 firmware prior to V5.17(ABPC.3)C0, which processes symbolic links on external storage media. A local authenticated attacker with administrator privileges could abuse this vulnerability to access the root file system by creating a symbolic link on external storage media, such as a USB flash drive, and then logging into the FTP server on a vulnerable device. |
Wed, 17 Dec 2025 09:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-552 |
Thu, 03 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: Zyxel
Published:
Updated: 2025-12-17T08:33:35.888Z
Reserved: 2022-11-15T00:00:00.000Z
Link: CVE-2022-45440
Updated: 2024-08-03T14:09:57.074Z
Status : Modified
Published: 2023-01-17T02:15:09.517
Modified: 2025-12-17T09:15:50.840
Link: CVE-2022-45440
No data.
OpenCVE Enrichment
No data.
EUVD