CVE-2025-13942 – Zyxel EX3510-B0 UPnP Command Injection

CVE ID : CVE-2025-13942

Published : Feb. 24, 2026, 2:32 a.m. | 33 minutes ago

Description : A command injection vulnerability in the UPnP function of the Zyxel EX3510-B0 firmware versions through 5.17(ABUP.15.1)C0 could allow a remote attacker to execute operating system (OS) commands on an affected device by sending specially crafted UPnP SOAP requests.

Severity: 9.8 | CRITICAL

Visit the link for more details, such as CVSS details, affected products, timeline, and more… 

نوشته های مشابه