Zyxel Product Security Update Advisory

Zyxel Product Security Update Advisory

Overview

 

Zyxel has released a security update to fix vulnerabilities in its products. Users of affected products are advised to update to the latest version.

 

 

Affected Products

 

CVE-2025-13942

 

4G LTE/5G NR CPE LTE3301-PLUS version: 1.00(ABQU.8)C0 and earlier
4G LTE/5G NR CPE NR7101 version: 1.00(ABUV.11)C0 or earlier
4G LTE/5G NR CPE Nebula LTE3301-PLUS version: 1.18(ACCA.6)C0 or lower
4G LTE/5G NR CPE Nebula NR7101 version: 1.16(ACCC.1)C0 or earlier
DSL/Ethernet CPE DX4510-B0 version: 5.17(ABYL.10)C0 or earlier
DSL/Ethernet CPE DX4510-B1 version: 5.17(ABYL.10)C0 or earlier
DSL/Ethernet CPE EE6510-10 version: 5.19(ACJQ.4)C0 or earlier
DSL/Ethernet CPE EMG6726-B10A version: 5.13 (ABNP.8.1)C1 or earlier
DSL/Ethernet CPE EX2210-T0 version: 5.50 (ACDI.2.3)C0 or earlier
DSL/Ethernet CPE EX3510-B0 version: 5.17 (ABUP.15.1)C0 or earlier
DSL/Ethernet CPE EX3510-B1 version: 5.17(ABUP.15.1)C0 or earlier
DSL/Ethernet CPE EX5510-B0 version: 5.17(ABQX.11)C0 or earlier
DSL/Ethernet CPE EX5512-T0 version: 5.70 (ACEG.5.3)C0 or earlier
DSL/Ethernet CPE EX7710-B0 version: 5.18 (ACAK.1.5)C0 or earlier
DSL/Ethernet CPE VMG4927-B50A version: 5.13 (ABLY.10.1)C0 or earlier
Fiber ONTs PX3321-T1 version: 5.44 (ACJB.1.4)C0 or earlier
Fiber ONTs PX3321-T1 version: 5.44(ACHK.2)C0 or earlier
Fiber ONTs PX5301-T0 version: 5.44 (ACKB.0.5)C0 or earlier
Wireless Extenders WX5610-B0 version: 5.18(ACGJ.0.4)C0 or earlier

 

CVE-2025-13943

 

DSL/Ethernet CPE DM4200-B0 version: 5.17(ACBS.1.5)C0 or earlier
DSL/Ethernet CPE DX3300-T0 version: 5.50(ABVY.7)C0 or earlier
DSL/Ethernet CPE DX3300-T1 version: 5.50(ABVY.7)C0 or earlier
DSL/Ethernet CPE DX3301-T0 version: 5.50(ABVY.7)C0 or earlier
DSL/Ethernet CPE DX4510-B0 version: 5.17(ABYL.10)C0 or earlier
DSL/Ethernet CPE DX4510-B1 version: 5.17(ABYL.10)C0 or earlier
DSL/Ethernet CPE DX5401-B1 version: 5.17(ABYO.7)C0 or earlier
DSL/Ethernet CPE EE3301-00 version: 5.63 (ACMU.2)C0 or earlier
DSL/Ethernet CPE EE5301-00 version: 5.63 (ACLD.2)C0 or earlier
DSL/Ethernet CPE EE6510-10 version: 5.19(ACJQ.4)C0 or earlier
DSL/Ethernet CPE EMG3525-T50B version: 5.50 (ABPM.9.6)C0 or earlier
DSL/Ethernet CPE EMG5523-T50B version: 5.50 (ABPM.9.6)C0 and earlier
DSL/Ethernet CPE EMG6726-B10A version: 5.13 (ABNP.8.1)C1 or earlier
DSL/Ethernet CPE EX2210-T0 version: 5.50 (ACDI.2.3)C0 or earlier
DSL/Ethernet CPE EX3300-T0 version: 5.50 (ABVY.7)C0 or earlier
DSL/Ethernet CPE EX3300-T1 version: 5.50(ABVY.7)C0 or earlier
DSL/Ethernet CPE EX3301-T0 version: 5.50(ABVY.7)C0 or earlier
DSL/Ethernet CPE EX3500-T0 version: 5.44(ACHR.5)C0 or earlier
DSL/Ethernet CPE EX3501-T0 version: 5.44(ACHR.5)C0 or earlier
DSL/Ethernet CPE EX3510-B0 version: 5.17(ABUP.15.1)C0 or earlier
DSL/Ethernet CPE EX3510-B1 version: 5.17(ABUP.15.1)C0 or earlier
DSL/Ethernet CPE EX3600-T0 version: 5.70 (ACIF.2)C0 or earlier
DSL/Ethernet CPE EX5401-B1 version: 5.17 (ABYO.7)C0 or earlier
DSL/Ethernet CPE EX5510-B0 version: 5.17 (ABQX.11)C0 or earlier
DSL/Ethernet CPE EX5512-T0 version: 5.70 (ACEG.5.3)C0 or earlier
DSL/Ethernet CPE EX5601-T0 version: 5.70 (ACDZ.5)C0 or earlier
DSL/Ethernet CPE EX5601-T1 version: 5.70(ACDZ.5)C0 or earlier
DSL/Ethernet CPE EX7501-B0 version: 5.18(ACHN.3)C0 or earlier
DSL/Ethernet CPE EX7710-B0 version: 5.18 (ACAK.1.5)C0 or earlier
DSL/Ethernet CPE GM4100-B0 version: 5.18(ACCL.1.1)C0 or earlier
DSL/Ethernet CPE VMG3625-T50B version: 5.50 (ABPM.9.6)C0 or earlier
DSL/Ethernet CPE VMG4005-B50A version: 5.17 (ABQA.3.1)C0 or earlier
DSL/Ethernet CPE VMG4005-B60A version: 5.17 (ABQA.3.1)C0 or earlier
DSL/Ethernet CPE VMG4927-B50A version: 5.13 (ABLY.10.1)C0 or earlier
DSL/Ethernet CPE VMG8623-T50B version: 5.50 (ABPM.9.6)C0 or earlier
Fiber ONTs AM7510-00 version: 5.63 (ACOR.0)C0 or earlier
Fiber ONTs AX7501-B1 version: 5.17(ABPC.7)C0 or earlier
Fiber ONTs PE3301-00 version: 5.63(ACMT.2)C0 or earlier
Fiber ONTs PE5301-01 version: 5.63(ACOJ.2)C0 or earlier
Fiber ONTs PM3100-T0 version: 5.42(ACBF.4.1)C0 or earlier
Fiber ONTs PM5100-T0 version: 5.42(ACBF.4.1)C0 or earlier
Fiber ONTs PM5100-T1 version: 5.42(ACBF.4.1)C0 or earlier
Fiber ONTs PM7300-T0 version: 5.42(ABYY.4)C0 or earlier
Fiber ONTs PM7500-00 version: 5.61(ACKK.1.1)C0 or earlier
Fiber ONTs PX3321-T1 version: 5.44(ACJB.1.4)C0 or earlier
Fiber ONTs PX3321-T1 version: 5.44(ACHK.2)C0 or earlier
Fiber ONTs PX5301-T0 version: 5.44 (ACKB.0.5)C0 or earlier
Wireless Extenders WE3300-00 version: 5.70(ACKA.1)C0 or earlier
Wireless Extenders WE4600-00 version: 6.70(ACKT.0)B8 or earlier
Wireless Extenders WX3100-T0 version: 5.50(ABVL.4.8)C0 or earlier
Wireless Extenders WX3401-B1 version: 5.17(ABVE.2.9)C0 or earlier
Wireless Extenders WX5600-T0 version: 5.70 (ACEB.5)C0 or earlier
Wireless Extenders WX5610-B0 version: 5.18(ACGJ.0.4)C0 or earlier

 

CVE-2026-1459

 

DSL/Ethernet CPE DX5401-B1 version: 5.17 (ABYO.7.1)C0 or earlier
DSL/Ethernet CPE EMG3525-T50B version: 5.50 (ABPM.9.7)C0 or earlier
DSL/Ethernet CPE EMG5523-T50B version: 5.50 (ABPM.9.7)C0 or earlier
DSL/Ethernet CPE VMG3625-T50B version: 5.50 (ABPM.9.7)C0 or earlier
DSL/Ethernet CPE VMG3625-T50C version: 5.50 (ABPM.9.7)C0 or earlier
DSL/Ethernet CPE VMG8623-T50B version: 5.50 (ABPM.9.7)C0 or earlier

 

 

Resolved Vulnerabilities

 

Command injection vulnerability in the UPnP feature in certain 4G LTE/5G NR CPEs, DSL/Ethernet CPEs, Fiber ONTs, and Wireless Extenders firmware versions (CVE-2025-13942)
command injection vulnerability in the log file download feature in certain DSL/Ethernet CPEs, Fiber ONTs, and Wireless Extenders firmware versions (CVE-2025-13943)

Command injection vulnerability in the TR-369 certificate download CGI program in certain DSL/Ethernet CPE firmware versions (CVE-2026-1459)

 

 

Vulnerability Patches

 

Vulnerability patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest version of Vulnerability Patches.

 

CVE-2025-13942

 

4G LTE/5G NR CPE LTE3301-PLUS version: 1.00(ABQU.9)C0
4G LTE/5G NR CPE NR7101 version: 1.00(ABUV.12)B2
4G LTE/5G NR CPE Nebula LTE3301-PLUS version: 1.18(ACCA.6)V0
4G LTE/5G NR CPE Nebula NR7101 version: 1.16(ACCC.1)V0
DSL/Ethernet CPE DX4510-B0 version: 5.17 (ABYL.10.1)C0
DSL/Ethernet CPE DX4510-B1 version: 5.17(ABYL.10.1)C0
DSL/Ethernet CPE EE6510-10 version: 5.19 (ACJQ.4.1)C0
DSL/Ethernet CPE EMG6726-B10A version: 5.13 (ABNP.8.2)C1
DSL/Ethernet CPE EX2210-T0 version: 5.50 (ACDI.2.4)C0
DSL/Ethernet CPE EX3510-B0 version: 5.17 (ABUP.15.2)C0
DSL/Ethernet CPE EX3510-B1 version: 5.17 (ABUP.15.2)C0
DSL/Ethernet CPE EX5510-B0 version: 5.17 (ABQX.11.1)C0
DSL/Ethernet CPE EX5512-T0 version: 5.70 (ACEG.5.4)C0
DSL/Ethernet CPE EX7710-B0 version: 5.18 (ACAK.1.6)C0
DSL/Ethernet CPE VMG4927-B50A version: 5.13 (ABLY.10.2)C0
Fiber ONTs PX3321-T1 version: 5.44 (ACJB.1.5)C0
Fiber ONTs PX3321-T1 version: 5.44(ACHK.3)C0
Fiber ONTs PX5301-T0 Version: 5.70 (ACEB.5.1)C0
Wireless Extenders WX5610-B0 version: 5.18 (ACGJ.0.5)C0

 

CVE-2025-13943

 

DSL/Ethernet CPE DM4200-B0 version: 5.17 (ACBS.1.6)C0
DSL/Ethernet CPE DX3300-T0 version: 5.50 (ABVY.7.1)C0
DSL/Ethernet CPE DX3300-T1 version: 5.50 (ABVY.7.1)C0
DSL/Ethernet CPE DX3301-T0 version: 5.50 (ABVY.7.1)C0
DSL/Ethernet CPE DX4510-B0 version: 5.17 (ABYL.10.1)C0
DSL/Ethernet CPE DX4510-B1 version: 5.17 (ABYL.10.1)C0
DSL/Ethernet CPE DX5401-B1 version: 5.17 (ABYO.7.1)C0
DSL/Ethernet CPE EE3301-00 version: 5.63 (ACMU.2.1)C0
DSL/Ethernet CPE EE5301-00 version: 5.63 (ACLD.2.1)C0
DSL/Ethernet CPE EE6510-10 version: 5.19 (ACJQ.4.1)C0
DSL/Ethernet CPE EMG3525-T50B version: 5.50 (ABPM.9.7)C0
DSL/Ethernet CPE EMG5523-T50B version: 5.50 (ABPM.9.7)C0
DSL/Ethernet CPE EMG6726-B10A version: 5.13 (ABNP.8.2)C1
DSL/Ethernet CPE EX2210-T0 version: 5.50 (ACDI.2.4)C0
DSL/Ethernet CPE EX3300-T0 version: 5.50 (ABVY.7.1)C0
DSL/Ethernet CPE EX3300-T1 version: 5.50 (ABVY.7.1)C0
DSL/Ethernet CPE EX3301-T0 version: 5.50 (ABVY.7.1)C0
DSL/Ethernet CPE EX3500-T0 version: 5.44 (ACHR.5.1)C0
DSL/Ethernet CPE EX3501-T0 version: 5.44 (ACHR.5.1)C0
DSL/Ethernet CPE EX3510-B0 version: 5.17 (ABUP.15.2)C0
DSL/Ethernet CPE EX3510-B1 version: 5.17 (ABUP.15.2)C0
DSL/Ethernet CPE EX3600-T0 version: 5.70 (ACIF.2.1)C0
DSL/Ethernet CPE EX5401-B1 version: 5.17 (ABYO.7.1)C0
DSL/Ethernet CPE EX5510-B0 version: 5.17 (ABQX.11.1)C0
DSL/Ethernet CPE EX5512-T0 version: 5.70 (ACEG.5.4)C0
DSL/Ethernet CPE EX5601-T0 version: 5.70 (ACDZ.5.1)C0
DSL/Ethernet CPE EX5601-T1 version: 5.70 (ACDZ.5.1)C0
DSL/Ethernet CPE EX7501-B0 version: 5.18 (ACHN.3.1)C0
DSL/Ethernet CPE EX7710-B0 version: 5.18 (ACAK.1.6)C0
DSL/Ethernet CPE GM4100-B0 version: 5.18 (ACCL.2)C0
DSL/Ethernet CPE VMG3625-T50B version: 5.50 (ABPM.9.7)C0
DSL/Ethernet CPE VMG4005-B50A version: 5.17 (ABQA.3.2)C0
DSL/Ethernet CPE VMG4005-B60A version: 5.17 (ABQA.3.2)C0
DSL/Ethernet CPE VMG4927-B50A version: 5.13 (ABLY.10.2)C0
DSL/Ethernet CPE VMG8623-T50B version: 5.50 (ABPM.9.7)C0
Fiber ONTs AM7510-00 version: 5.63 (ACOR.0.1)C0
Fiber ONTs AX7501-B1 version: 5.17 (ABPC.7.1)C0
Fiber ONTs PE3301-00 version: 5.63 (ACMT.2.1)C0
Fiber ONTs PE5301-01 version: 5.63 (ACOJ.2.1)C0
Fiber ONTs PM3100-T0 version: 5.42(ACBF.4.2)C0
Fiber ONTs PM5100-T0 version: 5.42(ACBF.4.2)C0
Fiber ONTs PM5100-T1 version: 5.42(ACBF.4.2)C0
Fiber ONTs PM7300-T0 version: 5.42(ABYY.4.1)C0
Fiber ONTs PM7500-00 version: 5.61(ACKK.1.2)C0
Fiber ONTs PX3321-T1 version: 5.44 (ACJB.1.5)C0
Fiber ONTs PX3321-T1 version: 5.44(ACHK.3)C0
Fiber ONTs PX5301-T0 version: 5.44 (ACKB.0.6)C0
Wireless Extenders WE3300-00 version: 5.70 (ACKA.1.1)C0
Wireless Extenders WE4600-00 version: 6.70(ACKT.0)C0
Wireless Extenders WX3100-T0 version: 5.50 (ABVL.4.9)C0
Wireless Extenders WX3401-B1 version: 5.17 (ABVE.2.10)C0
Wireless Extenders WX5600-T0 version: 5.70 (ACEB.5.1)C0
Wireless Extenders WX5610-B0 version: 5.18 (ACGJ.0.5)C0

 

CVE-2026-1459

 

DSL/Ethernet CPE DX5401-B1 version: 5.17(ABYO.7.2)C0 (March 2026)
DSL/Ethernet CPE EMG3525-T50B version: 5.50 (ABPM.9.8)C0 (March 2026)
DSL/Ethernet CPE EMG5523-T50B version: 5.50 (ABPM.9.8)C0 (Mar 2026)
DSL/Ethernet CPE VMG3625-T50B version: 5.50 (ABPM.9.8)C0 (Mar 2026)
DSL/Ethernet CPE VMG3625-T50C version: 5.50 (ABPM.9.8)C0 (Mar 2026)
DSL/Ethernet CPE VMG8623-T50B version: 5.50 (ABPM.9.8)C0 (Mar 2026)

 

 

References

 

[1] Zyxel security advisory for null pointer dereference and command injection vulnerabilities in certain 4G LTE/5G NR CPE, DSL/Ethernet CPE, Fiber ONTs, Security Routers, and Wireless Extenders
https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-null-pointer-dereference-and-command-injection-vulnerabilities-in-certain-4g-lte-5g-nr-cpe-dsl-ethernet-cpe-fiber-onts-security-routers-and-wireless-extenders-02-24-2026