Security Advisory

CVE-2025-8693

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-11-18 01:25:05
Last updated 2026-02-26 16:56:47
Assigner Zyxel
State PUBLISHED

Description

A post-authentication command injection vulnerability in the "priv" parameter of Zyxel DX3300-T0 firmware version 5.50(ABVY.6.3)C0 and earlier could allow an authenticated attacker to execute operating system (OS) commands on an affected device.