An uncontrolled resource consumption vulnerability in the web server of Zyxel DX3301-T0 firmware version 5.50(ABVY.6.3)C0 and earlier could allow an attacker to perform Slowloris‑style denial‑of‑service (DoS) attacks. Such attacks may temporarily block legitimate HTTP requests and partially disrupt access to the web management interface, while other networking services remain unaffected.
History

Tue, 18 Nov 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 18 Nov 2025 09:15:00 +0000

Type Values Removed Values Added
First Time appeared Zyxel
Zyxel dx3301-t0 Firmware
Vendors & Products Zyxel
Zyxel dx3301-t0 Firmware

Tue, 18 Nov 2025 01:45:00 +0000

Type Values Removed Values Added
Description An uncontrolled resource consumption vulnerability in the web server of Zyxel DX3301-T0 firmware version 5.50(ABVY.6.3)C0 and earlier could allow an attacker to perform Slowloris‑style denial‑of‑service (DoS) attacks. Such attacks may temporarily block legitimate HTTP requests and partially disrupt access to the web management interface, while other networking services remain unaffected.
Weaknesses CWE-400
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Zyxel

Published:

Updated: 2025-11-18T16:35:31.932Z

Reserved: 2025-06-25T02:16:25.675Z

Link: CVE-2025-6599

cve-icon Vulnrichment

Updated: 2025-11-18T14:25:07.990Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2025-11-18T02:15:45.210

Modified: 2025-11-18T14:06:29.817

Link: CVE-2025-6599

cve-icon Redhat

No data.