CVE-2025-11848 - Zyxel Wake-on-LAN CGI Null Pointer Dereference Denial-of-Service Vulnerability

CVE-2025-11848 - Zyxel Wake-on-LAN CGI Null Pointer Dereference Denial-of-Service Vulnerability

CVE ID : CVE-2025-11848 Published : Feb. 24, 2026, 3:16 a.m. | 1 hour, 12 minutes ago Description : A null pointer dereference vulnerability in the Wake-on-LAN CGI program of the Zyxel VMG3625-T50B firmware version through 5.50(ABPM.9.6)C0 and the Zyxel WX3100-T0 firmware versions through 5.50(ABVL.4.8)C0 could allow an authenticated attacker with administrator privileges to trigger a denial-of-service (DoS) condition by sending a crafted HTTP request. Severity: 4.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
MEDIUM
Published
Feb. 24, 2026
Impact: DoS