CVE-2017-18368: Zyxel P660HN-T1A Routers
EPSS94.4%No. 381 of 1739 in KEV
CVE year2017~6 yrs before listing
Same vendor in KEV13
Same product1
| Field | Value |
|---|---|
| Vendor | Zyxel |
| Product | P660HN-T1A Routers |
| Name | Zyxel P660HN-T1A Routers Command Injection Vulnerability |
| Added to KEV | 2023-08-07 |
| US federal due date | 2023-08-28 |
| Ransomware use | Unknown |
| CWE | CWE-78 |
CISA description
Zyxel P660HN-T1A routers contain a command injection vulnerability in the Remote System Log forwarding function, which is accessible by an unauthenticated user and exploited via the remote_host parameter of the ViewLog.asp page.
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
A Zyxel P660HN-T1A Routers vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2023-08-07.