A command injection vulnerability in the UPnP function of the Zyxel EX3510-B0 firmware versions through 5.17(ABUP.15.1)C0 could allow a remote attacker to execute operating system (OS) commands on an affected device by sending specially crafted UPnP SOAP requests.
References
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
Configuration 4 (hide)
| AND |
|
Configuration 5 (hide)
| AND |
|
Configuration 6 (hide)
| AND |
|
Configuration 7 (hide)
| AND |
|
Configuration 8 (hide)
| AND |
|
Configuration 9 (hide)
| AND |
|
Configuration 10 (hide)
| AND |
|
Configuration 11 (hide)
| AND |
|
Configuration 12 (hide)
| AND |
|
Configuration 13 (hide)
| AND |
|
Configuration 14 (hide)
| AND |
|
Configuration 15 (hide)
| AND |
|
Configuration 16 (hide)
| AND |
|
Configuration 17 (hide)
| AND |
|
Configuration 18 (hide)
| AND |
|
Configuration 19 (hide)
| AND |
|
History
25 Feb 2026, 18:13
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Zyxel ex2210-t0 Firmware
Zyxel lte3301-plus Firmware Zyxel ex7710-b0 Firmware Zyxel ex5510-b0 Firmware Zyxel wx5610-b0 Zyxel lte3301-plus Zyxel nebula Nr7101 Zyxel ex5510-b0 Zyxel vmg4927-b50a Zyxel px3321-t1 Firmware Zyxel dx4510-b0 Firmware Zyxel px5301-t0 Firmware Zyxel px5301-t0 Zyxel nebula Lte3301-plus Firmware Zyxel ex3510-b1 Firmware Zyxel nr7101 Firmware Zyxel ex3510-b1 Zyxel ex3510-b0 Firmware Zyxel dx4510-b0 Zyxel vmg4927-b50a Firmware Zyxel ex2210-t0 Zyxel px3321-t1 Zyxel Zyxel emg6726-b10a Zyxel ex5512-t0 Firmware Zyxel nr7101 Zyxel dx4510-b1 Firmware Zyxel nebula Lte3301-plus Zyxel emg6726-b10a Firmware Zyxel wx5610-b0 Firmware Zyxel ex7710-b0 Zyxel ee6510-10 Firmware Zyxel ex5512-t0 Zyxel ee6510-10 Zyxel nebula Nr7101 Firmware Zyxel dx4510-b1 Zyxel ex3510-b0 |
|
| CPE | cpe:2.3:o:zyxel:nr7101_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wx5610-b0:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:lte3301-plus_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nr7101:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:ee6510-10:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nebula_lte3301-plus_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:ex5512-t0_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:px5301-t0:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:ex5512-t0:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:ex7710-b0_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:ex3510-b0_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:ex2210-t0_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:ee6510-10_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:px3321-t1:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:px3321-t1_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wx5610-b0_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:ex5510-b0:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:dx4510-b0_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nebula_lte3301-plus:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:ex5510-b0_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:ex3510-b1_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:dx4510-b0:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:dx4510-b1_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:ex3510-b1:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nebula_nr7101_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nebula_nr7101:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:dx4510-b1:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:vmg4927-b50a_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:vmg4927-b50a:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:lte3301-plus:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:ex3510-b0:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:emg6726-b10a:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:ex7710-b0:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:emg6726-b10a_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:px5301-t0_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:ex2210-t0:-:*:*:*:*:*:*:* |
|
| References | () https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-null-pointer-dereference-and-command-injection-vulnerabilities-in-certain-4g-lte-5g-nr-cpe-dsl-ethernet-cpe-fiber-onts-security-routers-and-wireless-extenders-02-24-2026 - Vendor Advisory | |
| Summary |
|
24 Feb 2026, 03:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-02-24 03:16
Updated : 2026-02-25 18:13
NVD link : CVE-2025-13942
Mitre link : CVE-2025-13942
CVE.ORG link : CVE-2025-13942
JSON object : View
Products Affected
zyxel
- wx5610-b0_firmware
- nebula_lte3301-plus_firmware
- px3321-t1
- wx5610-b0
- ex2210-t0_firmware
- dx4510-b1_firmware
- nebula_lte3301-plus
- dx4510-b1
- emg6726-b10a
- ex2210-t0
- ee6510-10_firmware
- ex7710-b0
- vmg4927-b50a_firmware
- ex5512-t0_firmware
- ex5512-t0
- px3321-t1_firmware
- ex3510-b1_firmware
- vmg4927-b50a
- ex5510-b0
- dx4510-b0
- lte3301-plus_firmware
- nr7101_firmware
- px5301-t0
- ex3510-b1
- ee6510-10
- px5301-t0_firmware
- lte3301-plus
- ex7710-b0_firmware
- nr7101
- nebula_nr7101
- ex3510-b0
- dx4510-b0_firmware
- ex5510-b0_firmware
- ex3510-b0_firmware
- emg6726-b10a_firmware
- nebula_nr7101_firmware
CWE
CWE-78
Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
