Remote Code Execution Vulnerability in ZyXEL NBG-418N Admin Interface
CVE-2015-7283

8.1HIGH

Key Information:

Vendor
Zyxel
Vendor
CVE Published:
31 December 2015

Summary

The ZyXEL NBG-418N router's web administration interface is vulnerable due to the presence of a default password (1234) for the admin account. This security flaw allows remote attackers with access to the Local Area Network (LAN) to gain administrative privileges, potentially leading to unauthorized changes to the device's configuration and other malicious activities. Users are strongly advised to change the default password and secure their devices to prevent exploitation.

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.