CVE-2025-12917

MEDIUM

TOZED ZLT T10 T10PLUS_3.04.15 - DoS

Title source: llm

Description

A vulnerability was identified in TOZED ZLT T10 T10PLUS_3.04.15. The affected element is an unknown function of the file /reqproc/proc_post of the component Reboot Handler. Such manipulation leads to denial of service. Access to the local network is required for this attack to succeed. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

Exploits (1)

nomisec WORKING POC 1 stars
by 0xcucumbersalad · poc
https://github.com/0xcucumbersalad/CVE-2025-12917-PoC

Scores

CVSS v3 4.3
EPSS 0.0023
EPSS Percentile 45.3%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L

Details

CWE
CWE-404
Status published
Products (1)
gztozed/zlt_t10_plus_firmware 3.04.15
Published Nov 09, 2025
Tracked Since Feb 18, 2026