cbcvebase.
CVE-2026-0711
published 2026-04-28

CVE-2026-0711: A post-authentication command injection vulnerability in the EasyMesh-related APIs of Zyxel DX3300-T0 firmware versions through 5.50(ABVY.7.1)C0 could allow an…

medium6.8CVSS 3.1
AVAACLPRHUINSUCHIHAH
A post-authentication command injection vulnerability in the EasyMesh-related APIs of Zyxel DX3300-T0 firmware versions through 5.50(ABVY.7.1)C0 could allow an authenticated, adjacent attacker with administrator privileges to execute OS commands on an affected device.

Affected

1 ranges
VendorProductVersion rangeFixed in
zyxeldx3300-t0_firmware<= 5.50(ABVY.7.1)C0