cbcvebase.

Zyxel Gs1900-10Hp Firmware vulnerabilities

35 known vulnerabilities affecting zyxel/gs1900-10hp_firmware.

Total CVEs
35
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH17MEDIUM13

Vulnerabilities

Page 1 of 2
CVE-2019-15800P3CRITICALCVSS 9.8fixed in 2.50\(aazi.0\)c02019-11-14
CVE-2019-15800 [CRITICAL] CWE-78 CVE-2019-15800: An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. Due to lack of An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. Due to lack of input validation in the cmd_sys_traceroute_exec(), cmd_sys_arp_clear(), and cmd_sys_ping_exec() functions in the libclicmd.so library contained in the firmware, an attacker could leverage these functions to call system() and execute arbitrary commands
nvd
CVE-2016-1329P3CRITICALCVSS 9.8fixed in 2.50\(aazi.0\)c02016-03-03
CVE-2016-1329 [CRITICAL] CWE-287 CVE-2016-1329: Cisco NX-OS 6.0(2)U6(1) through 6.0(2)U6(5) on Nexus 3000 devices and 6.0(2)A6(1) through 6.0(2)A6(5 Cisco NX-OS 6.0(2)U6(1) through 6.0(2)U6(5) on Nexus 3000 devices and 6.0(2)A6(1) through 6.0(2)A6(5) and 6.0(2)A7(1) on Nexus 3500 devices has hardcoded credentials, which allows remote attackers to obtain root privileges via a (1) TELNET or (2) SSH session, aka Bug ID CSCuy25800.
nvd
CVE-2019-15803P3CRITICALCVSS 9.1fixed in 2.50\(aazi.0\)c02019-11-14
CVE-2019-15803 [CRITICAL] CWE-287 CVE-2019-15803: An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. Through an undo An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. Through an undocumented sequence of keypresses, undocumented functionality is triggered. A diagnostics shell is triggered via CTRL-ALT-t, which prompts for the password returned by fds_sys_passDebugPasswd_ret(). The firmware contains access control checks that det
nvd
CVE-2026-7273P3HIGHCVSS 8.8≤ 2.90(AAZI.1)C02026-06-16
CVE-2026-7273 [HIGH] CWE-121 CVE-2026-7273: A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versi A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow a LAN-based, unauthenticated attacker to exploit the flaw and potentially execute OS commands via a crafted HTTP request.
nvd
CVE-2015-5988P3CRITICALCVSS 9.8fixed in 2.50\(aazi.0\)c02015-12-31
CVE-2015-5988 [CRITICAL] CWE-255 CVE-2015-5988: The web management interface on Belkin F9K1102 2 devices with firmware 2.10.17 has a blank password, The web management interface on Belkin F9K1102 2 devices with firmware 2.10.17 has a blank password, which allows remote attackers to obtain administrative privileges by leveraging a LAN session.
nvd
CVE-2019-15799P3HIGHCVSS 8.8fixed in 2.50\(aazi.0\)c02019-11-14
CVE-2019-15799 [HIGH] CWE-269 CVE-2019-15799: An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. User accounts c An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. User accounts created through the web interface of the device, when given non-admin level privileges, have the same level of privileged access as administrators when connecting to the device via SSH (while their permissions via the web interface are in fact restricted
nvd
CVE-2015-5989P3CRITICALCVSS 9.8fixed in 2.50\(aazi.0\)c02015-12-31
CVE-2015-5989 [CRITICAL] CWE-264 CVE-2015-5989: Belkin F9K1102 2 devices with firmware 2.10.17 rely on client-side JavaScript code for authorization Belkin F9K1102 2 devices with firmware 2.10.17 rely on client-side JavaScript code for authorization, which allows remote attackers to obtain administrative privileges via certain changes to LockStatus and Login_Success values.
nvd
CVE-2016-1302P3HIGHCVSS 8.8fixed in 2.50\(aazi.0\)c02016-02-07
CVE-2016-1302 [HIGH] CWE-284 CVE-2016-1302: Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3h) and 1 Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.0(3h) and 1.1 before 1.1(1j) and Nexus 9000 ACI Mode switches with software before 11.0(3h) and 11.1 before 11.1(1j) allow remote authenticated users to bypass intended RBAC restrictions via crafted REST requests, aka Bug ID CSCut12998.
nvd
CVE-2021-35031P3HIGHCVSS 8.0fixed in 2.70\(aazi.0\)-202112082021-12-28
CVE-2021-35031 [HIGH] CWE-78 CVE-2021-35031: A vulnerability in the TFTP client of Zyxel GS1900 series firmware, XGS1210 series firmware, and XGS A vulnerability in the TFTP client of Zyxel GS1900 series firmware, XGS1210 series firmware, and XGS1250 series firmware, which could allow an authenticated LAN user to execute arbitrary OS commands via the GUI of the vulnerable device.
nvd
CVE-2019-15801P3HIGHCVSS 7.5fixed in 2.50\(aazi.0\)c02019-11-14
CVE-2019-15801 [HIGH] CWE-798 CVE-2019-15801: An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. The firmware im An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. The firmware image contains encrypted passwords that are used to authenticate users wishing to access a diagnostics or password-recovery menu. Using the hardcoded cryptographic key found elsewhere in the firmware, these passwords can be decrypted. This is related to f
nvd
CVE-2015-0718P3HIGHCVSS 7.5fixed in 2.50\(aazi.0\)c02016-03-03
CVE-2015-0718 [HIGH] CWE-399 CVE-2015-0718: Cisco NX-OS 4.0 through 6.1 on Nexus 1000V 3000, 4000, 5000, 6000, and 7000 devices and Unified Comp Cisco NX-OS 4.0 through 6.1 on Nexus 1000V 3000, 4000, 5000, 6000, and 7000 devices and Unified Computing System (UCS) platforms allows remote attackers to cause a denial of service (TCP stack reload) by sending crafted TCP packets to a device that has a TIME_WAIT TCP session, aka Bug ID CSCub70579.
nvd
CVE-2019-15804P3HIGHCVSS 7.5fixed in 2.50\(aazi.0\)c02019-11-14
CVE-2019-15804 [HIGH] CVE-2019-15804: An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. By sending a si An issue was discovered on Zyxel GS1900 devices with firmware before 2.50(AAHH.0)C0. By sending a signal to the CLI process, undocumented functionality is triggered. Specifically, a menu can be triggered by sending the SIGQUIT signal to the CLI application (e.g., through CTRL+\ via SSH). The access control check for this menu does work and prohibits accessing
nvd
CVE-2015-5987P3HIGHCVSS 8.6fixed in 2.50\(aazi.0\)c02015-12-31
CVE-2015-5987 [HIGH] CVE-2015-5987: Belkin F9K1102 2 devices with firmware 2.10.17 use an improper algorithm for selecting the ID value Belkin F9K1102 2 devices with firmware 2.10.17 use an improper algorithm for selecting the ID value in the header of a DNS query, which makes it easier for remote attackers to spoof responses by predicting this value.
nvd
CVE-2021-35032P3HIGHCVSS 7.8fixed in 2.70\(aazi.0\)-202112082021-12-28
CVE-2021-35032 [HIGH] CWE-78 CVE-2021-35032: A vulnerability in the 'libsal.so' of the Zyxel GS1900 series firmware version 2.60 could allow an a A vulnerability in the 'libsal.so' of the Zyxel GS1900 series firmware version 2.60 could allow an authenticated local user to execute arbitrary OS commands via a crafted function call.
nvd
CVE-2016-1350P3HIGHCVSS 7.5fixed in 2.50\(aazi.0\)c02016-03-26
CVE-2016-1350 [HIGH] CWE-399 CVE-2016-1350: Cisco IOS 15.3 and 15.4, Cisco IOS XE 3.8 through 3.11, and Cisco Unified Communications Manager all Cisco IOS 15.3 and 15.4, Cisco IOS XE 3.8 through 3.11, and Cisco Unified Communications Manager allow remote attackers to cause a denial of service (device reload) via malformed SIP messages, aka Bug ID CSCuj23293.
nvd
CVE-2015-6313P3HIGHCVSS 7.5fixed in 2.50\(aazi.0\)c02016-04-06
CVE-2015-6313 [HIGH] CWE-399 CVE-2015-6313: Cisco TelePresence Server 4.1(2.29) through 4.2(4.17) on 7010; Mobility Services Engine (MSE) 8710; Cisco TelePresence Server 4.1(2.29) through 4.2(4.17) on 7010; Mobility Services Engine (MSE) 8710; Multiparty Media 310, 320, and 820; and Virtual Machine (VM) devices allows remote attackers to cause a denial of service (memory consumption or device reload) via crafted HTTP requests that are not followed by an unspecified negotiation, aka Bug ID CSCuv4
nvd
CVE-2015-6312P3HIGHCVSS 7.5fixed in 2.50\(aazi.0\)c02016-04-06
CVE-2015-6312 [HIGH] CWE-119 CVE-2015-6312: Cisco TelePresence Server 3.1 on 7010, Mobility Services Engine (MSE) 8710, Multiparty Media 310 and Cisco TelePresence Server 3.1 on 7010, Mobility Services Engine (MSE) 8710, Multiparty Media 310 and 320, and Virtual Machine (VM) devices allows remote attackers to cause a denial of service (device reload) via malformed STUN packets, aka Bug ID CSCuv01348.
nvd
CVE-2015-5990P3HIGHCVSS 8.8fixed in 2.50\(aazi.0\)c02015-12-31
CVE-2015-5990 [HIGH] CWE-352 CVE-2015-5990: Cross-site request forgery (CSRF) vulnerability on Belkin F9K1102 2 devices with firmware 2.10.17 al Cross-site request forgery (CSRF) vulnerability on Belkin F9K1102 2 devices with firmware 2.10.17 allows remote attackers to hijack the authentication of arbitrary users.
nvd
CVE-2015-6260P3HIGHCVSS 7.5fixed in 2.50\(aazi.0\)c02016-03-03
CVE-2015-6260 [HIGH] CWE-20 CVE-2015-6260: Cisco NX-OS 7.1(1)N1(1) on Nexus 5500, 5600, and 6000 devices does not properly validate PDUs in SNM Cisco NX-OS 7.1(1)N1(1) on Nexus 5500, 5600, and 6000 devices does not properly validate PDUs in SNMP packets, which allows remote attackers to cause a denial of service (SNMP application restart) via a crafted packet, aka Bug ID CSCut84645.
nvd
CVE-2015-6398P3HIGHCVSS 7.5fixed in 2.50\(aazi.0\)c02016-02-07
CVE-2015-6398 [HIGH] CWE-399 CVE-2015-6398: Cisco Nexus 9000 Application Centric Infrastructure (ACI) Mode switches with software before 11.0(1c Cisco Nexus 9000 Application Centric Infrastructure (ACI) Mode switches with software before 11.0(1c) allow remote attackers to cause a denial of service (device reload) via an IPv4 ICMP packet with the IP Record Route option, aka Bug ID CSCuq57512.
nvd
Zyxel Gs1900-10Hp Firmware vulnerabilities | cvebase