CVE-2015-6019: Zyxel PMG5318-b20a Firmware

High severity, CVSS 8.5. EPSS: 3% chance of exploitation in the next 30 days.

The management portal on ZyXEL PMG5318-B20A devices with firmware 1.00AANC0b5 does not terminate sessions upon a logout action, which allows remote attackers to bypass intended access restrictions by leveraging an unattended workstation.

Affected products

  • Zyxel PMG5318-b20a Firmware: version v100aanc0b5 only

Published 2015-12-31. Last modified 2026-06-17.