Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-12337 | **UNSUPPORTED WHEN ASSIGNED** A path traversal vulnerability in the web management interface of the Zyxel AMG1302-T10B firmware version 2.00(AAJC.16)C0 could allow an authenticated attacker with administrator privileges to access restricted directories by sending a crafted HTTP request to an affected device. |
Mon, 23 Jun 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zyxel
Zyxel amg1302-t10b Zyxel amg1302-t10b Firmware |
|
| CPEs | cpe:2.3:h:zyxel:amg1302-t10b:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:amg1302-t10b_firmware:2.00\(aajc.16\)c0:*:*:*:*:*:*:* |
|
| Vendors & Products |
Zyxel
Zyxel amg1302-t10b Zyxel amg1302-t10b Firmware |
Tue, 22 Apr 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 22 Apr 2025 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | **UNSUPPORTED WHEN ASSIGNED** A path traversal vulnerability in the web management interface of the Zyxel AMG1302-T10B firmware version 2.00(AAJC.16)C0 could allow an authenticated attacker with administrator privileges to access restricted directories by sending a crafted HTTP request to an affected device. | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Zyxel
Published:
Updated: 2025-04-22T13:28:29.341Z
Reserved: 2025-04-14T10:17:19.208Z
Link: CVE-2025-3577
Updated: 2025-04-22T13:28:23.992Z
Status : Analyzed
Published: 2025-04-22T03:15:21.637
Modified: 2025-06-23T19:29:59.393
Link: CVE-2025-3577
No data.
OpenCVE Enrichment
No data.
EUVD