Loading
A null pointer dereference vulnerability in the account settings CGI program of the Zyxel VMG3625-T50B firmware versions through 5.50(ABPM.9.6)C0 and the Zyxel WX3100-T0 firmware versions through 5.50(ABVL.4.8)C0 could allow an authenticated attacker with administrator privileges to trigger a denial-of-service (DoS) condition by sending a crafted HTTP request.
Use CWE-476, Zyxel vendor hub and Lte3301-Plus Firmware product page to widen CVE-2025-11846 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2025-13942, CVE-2024-8748 and CVE-2022-43392 for nearby disclosures in the same product family.