A post-authentication command injection vulnerability in the "DNSServer” parameter of the diagnostic function in the Zyxel VMG8825-T50K firmware version V5.50(ABOM.8.5)C0 and earlier could allow an authenticated attacker with administrator privileges to execute operating system (OS) commands on a vulnerable device.
Conclusion & alert: CVE-2024-11253 is rated Moderate Risk (48.3/100): CVSS High severity, with medium exploitation likelihood (EPSS 0.32%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-04-20 | 0.18% | 0.32% | +0.14% |
| 2 | 2026-04-19 | 0.32% | 0.18% | -0.14% |
| 3 | 2026-01-14 | — | 0.32% | — |
Full EPSS history (15 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.2 | 3.1 | HIGH |
|
1.2 | 5.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| zyxel | emg5723-t50k_firmware | <= 5.50\(abom.8.5\)c0 | cpe:2.3:o:zyxel:emg5723-t50k_firmware:*:*:*:*:*:*:*:* |
| zyxel | dm4200-b0_firmware | <= 5.17\(acbs.1\)c0 | cpe:2.3:o:zyxel:dm4200-b0_firmware:*:*:*:*:*:*:*:* |
| zyxel | vmg3927-t50k_firmware | <= 5.50\(abom.8.5\)c0 | cpe:2.3:o:zyxel:vmg3927-t50k_firmware:*:*:*:*:*:*:*:* |
| zyxel | vmg4005-b50a_firmware | <= 5.15\(abqa.2.3\)c0 | cpe:2.3:o:zyxel:vmg4005-b50a_firmware:*:*:*:*:*:*:*:* |
| zyxel | vmg4005-b60a_firmware | <= 5.15\(abqa.2.3\)c0 | cpe:2.3:o:zyxel:vmg4005-b60a_firmware:*:*:*:*:*:*:*:* |
| zyxel | vmg8825-t50k_firmware | <= 5.50\(abom.8.5\)c0 | cpe:2.3:o:zyxel:vmg8825-t50k_firmware:*:*:*:*:*:*:*:* |