ZyXEL P-1302-T10D v3 devices with firmware version 2.00(ABBX.3) and earlier do not properly enforce access control and could allow an unauthorized user to access certain pages that require admin privileges.
References
| Link | Resource |
|---|---|
| https://www.zyxel.com/support/P1302-T10D-v3-modem-insecure-direct-object-reference-vulnerability.shtml | Patch Vendor Advisory |
| https://www.zyxel.com/support/P1302-T10D-v3-modem-insecure-direct-object-reference-vulnerability.shtml | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2019-11-12 18:15
Updated : 2024-11-21 04:29
NVD link : CVE-2019-15815
Mitre link : CVE-2019-15815
CVE.ORG link : CVE-2019-15815
JSON object : View
Products Affected
zyxel
- 2.00\(abbx.3\)
- p-1302-t10d
CWE
CWE-639
Authorization Bypass Through User-Controlled Key
