Known vulnerabilities in WAX640S-6E

Software: WAX640S-6E
Software CPE: cpe:2.3:h:zyxel_communications_corp:wax640s-6e:*:*:*:*:*:*:*:*
Total vulnerabilities: 9
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting WAX640S-6E WAX640S-6E is affected by 9 known vulnerabilities: 1 high, 3 medium, 5 low Critical High Medium Low

Vulnerabilities (9)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU140858 - Improper Authentication
CVE-2026-8508
CWE-287 Medium
No
No
7.12(ACCM.0)C0 04.08.2026 SB2026080427
#VU140856 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2026-6837
CWE-78 Low
No
No
7.12(ACCM.0)C0 04.08.2026 SB2026080427
#VU112893 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2025-6265
CWE-22 Low
No
No
7.10(ACCM.3) 15.07.2025 SB2025071523
#VU96715 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2024-7261
CWE-78 High
No
No
7.00(ACCM.2) 03.09.2024 SB2024090324
#VU94650 - Improper Privilege Management
CVE-2024-1575
CWE-269 Medium
No
No
7.00(ACCM.1) 23.07.2024 SB2024072302
#VU86621 - Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')
CVE-2023-6398
CWE-78 Low
No
No
6.70(ACCM.1) 20.02.2024 SB2024022031
#VU83523 - Improper Privilege Management
CVE-2023-5797
CWE-269 Low
No
No
- 28.11.2023 SB2023112820
#VU83518 - Improper Privilege Management
CVE-2023-37925
CWE-269 Low
No
No
- 28.11.2023 SB2023112820
#VU75467 - Exposure of sensitive information to an unauthorized actor
CVE-2023-22918
CWE-200 Medium
No
No
6.55(ACCM.0) 25.04.2023 SB2023042508