Monitor vulnerabilities like this one. Sign up free to get alerted when software you use is affected.
6.5

CVE-2026-3871: Zyxel VMG4005-B50B Router: Temporary Denial-of-Service Risk

CVE-2026-3871
Summary

A flaw in the router's firmware allows a nearby attacker to temporarily shut down the UPnP feature, disrupting internet connectivity. This affects devices connected to the router that rely on UPnP. Users should update their firmware to the latest version to fix this issue.

Original title
A buffer overflow vulnerability in the UPnP DeletePortMapping() command in Zyxel VMG4005-B50B firmware versions through 5.13(ABRL.5.4)C0 could allow an adjacent attacker to trigger a temporary deni...
Original description
A buffer overflow vulnerability in the UPnP DeletePortMapping() command in Zyxel VMG4005-B50B firmware versions through 5.13(ABRL.5.4)C0 could allow an adjacent attacker to trigger a temporary denial-of-service (DoS) condition affecting the UPnP function of the affected device.
nvd CVSS3.1 6.5
Vulnerability type
CWE-120 Classic Buffer Overflow
Published: 2 Jun 2026 · Updated: 2 Jun 2026 · First seen: 2 Jun 2026