cbcvebase.
CVE-2008-1528
published 2008-03-26

CVE-2008-1528: ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), allow remote authenticated users to obtain…

PriorityP413medium4CVSS 2.0
AVNACLAuSCPINAN
EPSS
1.06%
60.7th percentile
ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), allow remote authenticated users to obtain authentication data by making direct HTTP requests and then reading the HTML source, as demonstrated by a request for (1) RemMagSNMP.html, which discloses SNMP communities; or (2) WLAN.html, which discloses WEP keys.

Affected

4 ranges
VendorProductVersion rangeFixed in
zyxelprestige_660
zyxelprestige_660
zyxelprestige_661
zyxelzynos
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.