CVE-2026-6058: Zyxel WRE6505 Firmware

Medium severity, CVSS 5.7. EPSS: 0.2% chance of exploitation in the next 30 days.

** UNSUPPORTED WHEN ASSIGNED ** An improper encoding or escaping vulnerability in the CGI program of Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0 could allow an adjacent attacker on the WLAN to cause a denial-of-service (DoS) condition in the web management interface by convincing an authenticated administrator to visit the “AP Select” page while a malformed SSID is present.

Affected products

  • Zyxel WRE6505 Firmware: version v1.00(abdv.3)c0 only

Published 2026-04-21. Last modified 2026-07-08.