Executive brief
A vulnerability exists in the Zyxel WRE6505 v2, a wireless range extender used to boost Wi-Fi signals. An attacker near the device could cause the web management interface to crash or become unresponsive by broadcasting a specially crafted Wi-Fi network name (SSID). This would prevent administrators from managing the device settings, though it is important to note that this product is no longer supported by the manufacturer.
Technical details
An improper encoding or escaping vulnerability (CWE-116) exists within the CGI program of the Zyxel WRE6505 v2 firmware version V1.00(ABDV.3)C0. An adjacent attacker on the WLAN can trigger a denial-of-service (DoS) condition affecting the web management interface. The attack is executed by broadcasting a malformed SSID; when an authenticated administrator navigates to the 'AP Select' page, the malformed string causes the interface to fail. This vulnerability is currently marked as 'unsupported' by the vendor as the product has reached end-of-life (EOL) status.
Affected products
- Zyxel WRE6505 v2 firmware V1.00(ABDV.3)C0
Timeline
- 2026-04-21: disclosed
- 2026-04-21: advisory