CVE-2019-15815
MEDIUMZyXEL P-1302-T10D <2.00(ABBX.3) - Privilege Escalation
Title source: llmDescription
ZyXEL P-1302-T10D v3 devices with firmware version 2.00(ABBX.3) and earlier do not properly enforce access control and could allow an unauthorized user to access certain pages that require admin privileges.
References (1)
Core 1
Core References
Patch, Vendor Advisory x_refsource_confirm
https://www.zyxel.com/support/P1302-T10D-v3-modem-insecure-direct-object-reference-vulnerability.shtml
Scores
CVSS v3
6.5
EPSS
0.0020
EPSS Percentile
42.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Details
CWE
CWE-639
Status
published
Products (1)
zyxel/2.00\(abbx.3\)
Published
Nov 12, 2019
Tracked Since
Feb 18, 2026