8.2

CVE-2022-43393

An improper check for unusual or exceptional conditions in the HTTP request processing function of Zyxel GS1920-24v2 firmware prior to V4.70(ABMH.8)C0, which could allow an unauthenticated attacker to corrupt the contents of the memory and result in a denial-of-service (DoS) condition on a vulnerable device.

Data is provided by the National Vulnerability Database (NVD)
ZyxelGs1350-6hp Firmware Version < 4.70\(abpi.5\)c0
   ZyxelGs1350-6hp Version-
ZyxelGs1350-12hp Firmware Version < 4.70\(abpj.5\)c0
   ZyxelGs1350-12hp Version-
ZyxelGs1350-18hp Firmware Version < 4.70\(abpk.5\)c0
   ZyxelGs1350-18hp Version-
ZyxelGs1350-26hp Firmware Version < 4.70\(abpl.5\)c0
   ZyxelGs1350-26hp Version-
ZyxelGs1915-8 Firmware Version < 4.70\(acap.3\)c0
   ZyxelGs1915-8 Version-
ZyxelGs1915-8ep Firmware Version < 4.70\(acaq.3\)c0
   ZyxelGs1915-8ep Version-
ZyxelGs1915-24e Firmware Version < 4.70\(acdr.3\)c0
   ZyxelGs1915-24e Version-
ZyxelGs1915-24ep Firmware Version < 4.70\(acds.3\)c0
   ZyxelGs1915-24ep Version-
ZyxelGs1920-24v2 Firmware Version < 4.70\(abmh.8\)c0
   ZyxelGs1920-24v2 Version-
ZyxelGs1920-48v2 Firmware Version < 4.70\(abmj.8\)c0
   ZyxelGs1920-48v2 Version-
ZyxelGs1920-24hpv2 Firmware Version < 4.70\(abmi.8\)c0
   ZyxelGs1920-24hpv2 Version-
ZyxelGs1920-48hpv2 Firmware Version < 4.70\(abmk.8\)c0
   ZyxelGs1920-48hpv2 Version-
ZyxelGs2220-10 Firmware Version < 4.70\(abro.6\)c0
   ZyxelGs2220-10 Version-
ZyxelGs2220-28 Firmware Version < 4.70\(abrq.6\)c0
   ZyxelGs2220-28 Version-
ZyxelGs2220-50 Firmware Version < 4.70\(abrs.6\)c0
   ZyxelGs2220-50 Version-
ZyxelGs2220-10hp Firmware Version < 4.70\(abrp.6\)c0
   ZyxelGs2220-10hp Version-
ZyxelGs2220-28hp Firmware Version < 4.70\(abrr.6\)c0
   ZyxelGs2220-28hp Version-
ZyxelGs2220-50hp Firmware Version < 4.70\(abrt.6\)c0
   ZyxelGs2220-50hp Version-
ZyxelXgs1930-28 Firmware Version < 4.70\(abht.5\)c0
   ZyxelXgs1930-28 Version-
ZyxelXgs1930-28hp Firmware Version < 4.70\(abhs.5\)c0
   ZyxelXgs1930-28hp Version-
ZyxelXgs1930-52 Firmware Version < 4.70\(abhu.5\)c0
   ZyxelXgs1930-52 Version-
ZyxelXgs1930-52hp Firmware Version < 4.70\(abhv.5\)c0
   ZyxelXgs1930-52hp Version-
ZyxelXs1930-10 Firmware Version < 4.80\(abqe.0\)c0
   ZyxelXs1930-10 Version-
ZyxelXs1930-12hp Firmware Version < 4.80\(abqf.0\)c0
   ZyxelXs1930-12hp Version-
ZyxelXs1930-12f Firmware Version < 4.80\(abzv.0\)c0
   ZyxelXs1930-12f Version-
ZyxelXgs2210-28 Firmware Version < 4.70\(aazj.2\)c0
   ZyxelXgs2210-28 Version-
ZyxelXgs2210-52 Firmware Version < 4.70\(aazk.2\)c0
   ZyxelXgs2210-52 Version-
ZyxelXgs2210-28hp Firmware Version < 4.70\(aazl.2\)c0
   ZyxelXgs2210-28hp Version-
ZyxelXgs2210-52hp Firmware Version < 4.70\(aazm.2\)c0
   ZyxelXgs2210-52hp Version-
ZyxelXgs2220-30 Firmware Version < 4.80\(abxn.1\)c0
   ZyxelXgs2220-30 Version-
ZyxelXgs2220-30hp Firmware Version < 4.80\(abxo.1\)c0
   ZyxelXgs2220-30hp Version-
ZyxelXgs2220-30f Firmware Version < 4.80\(abye.1\)c0
   ZyxelXgs2220-30f Version-
ZyxelXgs2220-54 Firmware Version < 4.80\(abxp.1\)c0
   ZyxelXgs2220-54 Version-
ZyxelXgs2220-54hp Firmware Version < 4.80\(abxq.1\)c0
   ZyxelXgs2220-54hp Version-
ZyxelXgs2220-54fp Firmware Version < 4.80\(acce.1\)c0
   ZyxelXgs2220-54fp Version-
ZyxelXgs4600-32 Firmware Version < 4.70\(abbh.4\)c0
   ZyxelXgs4600-32 Version-
ZyxelXgs4600-32f Firmware Version < 4.70\(abbi.4\)c0
   ZyxelXgs4600-32f Version-
ZyxelXgs4600-52f Firmware Version < 4.70\(abik.4\)c0
   ZyxelXgs4600-52f Version-
ZyxelXmg1930-30 Firmware Version < 4.80\(acar.0\)
   ZyxelXmg1930-30 Version-
ZyxelXmg1930-30hp Firmware Version < 4.80\(acas.0\)
   ZyxelXmg1930-30hp Version-
ZyxelXs3800-28 Firmware Version <= 4.80\(abml.1\)c0
   ZyxelXs3800-28 Version-
ZyxelMgs3500-24s Firmware Version < 4.10\(abbr.2\)c0
   ZyxelMgs3500-24s Version-
ZyxelMgs3520-28 Firmware Version < 4.10\(aatn.5\)c0
   ZyxelMgs3520-28 Version-
ZyxelMgs3520-28 Firmware Version4.10(abqm.1)c0
   ZyxelMgs3520-28 Version-
ZyxelMgs3520-28f Firmware Version < 4.10\(aatm.4\)c0
   ZyxelMgs3520-28f Version-
ZyxelMgs3530-28 Firmware Version < 4.10\(acem.2\)c0
   ZyxelMgs3530-28 Version-
ZyxelMgs3530-28 Firmware Version4.10(acfj.0)c0
   ZyxelMgs3530-28 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.45% 0.626
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 8.2 3.9 4.2
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
security@zyxel.com.tw 8.2 3.9 4.2
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H
CWE-754 Improper Check for Unusual or Exceptional Conditions

The product does not check or incorrectly checks for unusual or exceptional conditions that are not expected to occur frequently during day to day operation of the product.