CVE-2008-1523
Last modified
CVE-2008-1523 is a vulnerability of currently unknown severity. ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), allow remote authenticated users to obtain ISP and Dynamic DNS credentials by sending a direct request for (1) WAN.html, (2) wzPPPOE.html, and (3) rpDyDNS.html, and then reading the HTML source.. EPSS estimates a 1.22% chance of exploitation in the next 30 days.
Description
ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), allow remote authenticated users to obtain ISP and Dynamic DNS credentials by sending a direct request for (1) WAN.html, (2) wzPPPOE.html, and (3) rpDyDNS.html, and then reading the HTML source.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Zyxel | Prestige 660 | h-d1 | — |
| Zyxel | Prestige 660 | h-d3 | — |
| Zyxel | Prestige 661 | hw-d1 | — |
| Zyxel | Zynos | 3.40 | Agd.2 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2008-1523?
How severe is CVE-2008-1523?
How do I fix CVE-2008-1523?
Are you affected by CVE-2008-1523?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
