CVE-2025-3577: Zyxel AMG1302-t10b Firmware

Medium severity, CVSS 4.9. EPSS: 12.6% chance of exploitation in the next 30 days.

**UNSUPPORTED WHEN ASSIGNED** A path traversal vulnerability in the web management interface of the Zyxel AMG1302-T10B firmware version 2.00(AAJC.16)C0 could allow an authenticated attacker with administrator privileges to access restricted directories by sending a crafted HTTP request to an affected device.

Affected products

  • Zyxel AMG1302-t10b Firmware: version 2.00(aajc.16)c0 only

Published 2025-04-22. Last modified 2026-06-17.