CVE-2008-1528: Medium severity zyxel p-660h series vulnerability
ZyXEL Prestige routers, including P-660, P-661, and P-662 models with firmware 3.40(AGD.2) through 3.40(AHQ.3), allow remote authenticated users to obtain authentication data by making direct HTTP requests and then reading the HTML source, as demonstrated by a request for (1) RemMagSNMP.html, which discloses SNMP communities; or (2) WLAN.html, which discloses WEP keys.
Affected Software
Event History
Frequently Asked Questions
What are the potential risks of CVE-2008-1528?
CVE-2008-1528 can allow remote authenticated users to access sensitive authentication data.
How can I mitigate the impact of CVE-2008-1528?
To address CVE-2008-1528, users should upgrade their ZyXEL Prestige routers to a patched firmware version.
Which ZyXEL router models are affected by CVE-2008-1528?
Models affected by CVE-2008-1528 include the ZyXEL Prestige 660, 661, and 662 with specific firmware versions.
What is the nature of the vulnerability in CVE-2008-1528?
CVE-2008-1528 is a vulnerability that allows unauthorized access to authentication data through direct HTTP requests.
Is there an official patch available for CVE-2008-1528?
Yes, firmware updates are available that resolve the vulnerabilities associated with CVE-2008-1528.