CVE-2025-3577

**UNSUPPORTED WHEN ASSIGNED** A path traversal vulnerability in the web management interface of the Zyxel AMG1302-T10B firmware version 2.00(AAJC.16)C0 could allow an authenticated attacker with administrator privileges to access restricted directories by sending a crafted HTTP request to an affected device.
Configurations

No configuration.

History

22 Apr 2025, 14:15

Type Values Removed Values Added
References () https://github.com/Jiangxiazhe/IOT_Vulnerability/blob/main/README.md - () https://github.com/Jiangxiazhe/IOT_Vulnerability/blob/main/README.md -
Summary
  • (es) **NO COMPATIBLE CUANDO SE ASIGNÓ** Una vulnerabilidad de path traversal en la interfaz de administración web de la versión de firmware 2.00(AAJC.16)C0 del Zyxel AMG1302-T10B podría permitir que un atacante autenticado con privilegios de administrador acceda a directorios restringidos mediante el envío de una solicitud HTTP manipulada a un dispositivo afectado.

22 Apr 2025, 03:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-22 03:15

Updated : 2025-04-23 14:08


NVD link : CVE-2025-3577

Mitre link : CVE-2025-3577

CVE.ORG link : CVE-2025-3577


JSON object : View

Products Affected

No product.

CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')