ZeroHour

CVE-2025-6599

CVSS 3.1
7.5 high
EPSS
<1%p24
Published
()
Modified
Description

An uncontrolled resource consumption vulnerability in the web server of Zyxel DX3301-T0 firmware version 5.50(ABVY.6.3)C0 and earlier could allow an attacker to perform Slowloris‑style denial‑of‑service (DoS) attacks. Such attacks may temporarily block legitimate HTTP requests and partially disrupt access to the web management interface, while other networking services remain unaffected.

Vendors
zyxel
Products
lte3301-plus firmware, nr5103 firmware, nr5103e firmware, nr5309 firmware, nr7302 firmware, nr7303 firmware, nebula fwa505 firmware, nebula fwa510 firmware, nebula fwa515 firmware, nebula fwa710 firmware, dm4200-b0 firmware, dx3300-t0 firmware
Weakness
CWE-400
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.