CVE-2024-40891

HIGH(8.8)KEVElevated Risk

Zyxel DSL CPE OS Command Injection Vulnerability

Description

**UNSUPPORTED WHEN ASSIGNED** A post-authentication command injection vulnerability in the management commands of the legacy DSL CPE Zyxel VMG4325-B10A firmware version 1.00(AAFR.4)C0_20170615 could allow an authenticated attacker to execute operating system (OS) commands on an affected device via Telnet.

KEV Information

Vendor
Zyxel
Product
DSL CPE Devices
Date Added
February 11, 2025
Due Date
March 4, 2025
Required Action
The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization if a current mitigation is unavailable.

CVSS Score

Vector String
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HOpen in Calculator
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
LOW
User Interaction
NONE
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
Exploitability Score
2.8
Impact Score
5.9

CWEs

Affected Products

VendorProductVersion
zyxelvmg1312-b10a firmware-
zyxelvmg1312-b10b firmware-
zyxelvmg1312-b10e firmware-
zyxelvmg3312-b10a firmware-
zyxelvmg3313-b10a firmware-
zyxelvmg3926-b10b firmware-
zyxelvmg4325-b10a firmware-
zyxelvmg4380-b10a firmware-
zyxelvmg8324-b10a firmware-
zyxelvmg8924-b10a firmware-
zyxelsbg3300-n000 firmware-
zyxelsbg3300-nb00 firmware-
zyxelsbg3500-n000 firmware-
zyxelsbg3500-nb00 firmware-

References

CVSS Score

8.8
HIGH(8.8)

EPSS Score

EPSS Score22.00%
EPSS Percentile97.4%

Dates

PublishedFebruary 4, 2025
Last ModifiedJune 17, 2026
StatusAnalyzed
CVSS Versionv3.1

Need Help With Vulnerability Management?

Our security experts can help you prioritize and remediate vulnerabilities effectively.