ZenitelCVEs & Vulnerabilities

8 CVEs affecting Zenitel products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.

Most Affected Products

tcis-3 firmware 3tcis-3 3icx500 firmware 2icx510 2ip-stationweb 2ip-stationweb firmware 2icx510 firmware 2icx500 2
CVE-2025-59818CRITICAL

This vulnerability allows authenticated attackers to execute arbitrary commands on the underlying system using the file name of an uploaded file.

4 Feb 2026
9.8
CVSS
CVE-2025-64093CRITICAL

Remote Code Execution vulnerability that allows unauthenticated attackers to inject arbitrary commands into the hostname of the device.

9 Jan 2026
9.8
CVSS
CVE-2025-64092HIGH

This vulnerability allows unauthenticated attackers to inject an SQL request into GET request parameters and directly query the underlying database.

9 Jan 2026
7.5
CVSS
CVE-2025-64091HIGH

This vulnerability allows authenticated attackers to execute commands via the NTP-configuration of the device.

9 Jan 2026
8.8
CVSS
CVE-2025-64090HIGH

This vulnerability allows authenticated attackers to execute commands via the hostname of the device.

9 Jan 2026
8.8
CVSS
CVE-2021-40845HIGH

The web part of Zenitel AlphaCom XE Audio Server through 11.2.3.10, called AlphaWeb XE, does not restrict file upload in the Custom Scripts section at php/index.php. Neither the content nor extension of the uploaded files is checked, allowing execution of PHP code under the /cmd directory.

15 Sep 2021
8.8
CVSS
CVE-2018-19927MEDIUM

Zenitel Norway IP-StationWeb before 4.2.3.9 allows stored XSS via the Display Name for Station Status or Account Settings, related to the goform/zForm_save_changes sip_nick parameter. The password of alphaadmin for the admin account may be used for authentication in some cases.

7 Dec 2018
4.8
CVSS
CVE-2018-19926MEDIUM

Zenitel Norway IP-StationWeb before 4.2.3.9 allows reflected XSS via the goform/ PATH_INFO.

7 Dec 2018
6.1
CVSS
← PrevPage 1 / 1Next →
Zenitel CVEs & Vulnerabilities — 8 Tracked