7.5
CVE-2024-5412
- EPSS 0.46%
- Published 03.09.2024 02:15:05
- Last modified 06.09.2024 18:07:43
- Source security@zyxel.com.tw
- Teams watchlist Login
- Open Login
A buffer overflow vulnerability in the library "libclinkc" of the Zyxel VMG8825-T50K firmware version 5.50(ABOM.8)C0 could allow an unauthenticated attacker to cause denial of service (DoS) conditions by sending a crafted HTTP request to a vulnerable device.
Data is provided by the National Vulnerability Database (NVD)
Zyxel ≫ Nebula Lte3301-plus Firmware Version < 1.18\(acca.4\)c0
Zyxel ≫ Nebula Fwa505 Firmware Version < 1.18\(acko.4\)c0
Zyxel ≫ Nebula Fwa710 Firmware Version < 1.18\(acgc.4\)c0
Zyxel ≫ Nebula Fwa510 Firmware Version < 1.18\(acgd.4\)c0
Zyxel ≫ Wx5600-t0 Firmware Version < 5.70\(aceb.3.2\)c0
Zyxel ≫ Wx3401-b0 Firmware Version < 5.17\(abve.2.5\)c0
Zyxel ≫ Wx3100-t0 Firmware Version < 5.50\(abvl.4.2\)c0
Zyxel ≫ Scr50axe Firmware Version < 1.10\(acgn.3\)c0
Zyxel ≫ Px3321-t1 Firmware Version < 5.44\(acjb.0.2\)z0
Zyxel ≫ Pm7300-t0 Firmware Version < 5.42\(abyy.2.2\)c0
Zyxel ≫ Pm5100-t0 Firmware Version < 5.42\(acbf.2.1\)c0
Zyxel ≫ Pm3100-t0 Firmware Version < 5.42\(acbf.2.1\)c0
Zyxel ≫ Ax7501-b1 Firmware Version < 5.17\(abpc.5.2\)c0
Zyxel ≫ Ax7501-b0 Firmware Version < 5.17\(abpc.5.2\)c0
Zyxel ≫ Vmg8825-t50k Firmware Version < 5.50\(abom.8.4\)c0
Zyxel ≫ Vmg8623-t50b Firmware Version < 5.50\(abpm.9.2\)c0
Zyxel ≫ Vmg4005-b60a Firmware Version < 5.15\(abqa.2.2\)c0
Zyxel ≫ Vmg4005-b50a Firmware Version < 5.15\(abqa.2.2\)c0
Zyxel ≫ Vmg3927-t50k Firmware Version < 5.50\(abom.8.4\)c0
Zyxel ≫ Vmg3625-t50b Firmware Version < 5.50\(abpm.9.2\)c0
Zyxel ≫ Emg5723-t50k Firmware Version < 5.50\(abom.8.4\)c0
Zyxel ≫ Emg5523-t50b Firmware Version < 5.50\(abpm.9.2\)c0
Zyxel ≫ Emg3525-t50b Firmware Version < 5.50\(abpm.9.2\)c0
Zyxel ≫ Ex7710-b0 Firmware Version < 5.18\(acak.1\)c1
Zyxel ≫ Ex7501-b0 Firmware Version < 5.18\(achn.1.2\)c0
Zyxel ≫ Ex5601-t1 Firmware Version < 5.70\(acdz.3.2\)c0
Zyxel ≫ Ex5601-t0 Firmware Version < 5.70\(acdz.3.2\)c0
Zyxel ≫ Ex5512-t0 Firmware Version < 5.70\(aceg.3\)c2
Zyxel ≫ Ex5510-b0 Firmware Version < 5.17\(abqx.10\)b2
Zyxel ≫ Ex5401-b1 Firmware Version < 5.17\(abyo.6.2\)c0
Zyxel ≫ Ex5401-b0 Firmware Version < 5.17\(abyo.6.2\)c0
Zyxel ≫ Ex3510-b0 Firmware Version < 5.17\(abup.12\)b2
Zyxel ≫ Ex3501-t0 Firmware Version < 5.44\(achr.2\)c0
Zyxel ≫ Ex3500-t0 Firmware Version < 5.44\(achr.2\)c0
Zyxel ≫ Ex3301-t0 Firmware Version < 5.50\(abvy.5.3\)c0
Zyxel ≫ Ex3300-t1 Firmware Version < 5.50\(abvy.5.3\)c0
Zyxel ≫ Ex3300-t0 Firmware Version < 5.50\(abvy.5.3\)c0
Zyxel ≫ Dx5401-b1 Firmware Version < 5.17\(abyo.6.2\)c0
Zyxel ≫ Dx5401-b0 Firmware Version < 5.17\(abyo.6.2\)c0
Zyxel ≫ Dx4510-b0 Firmware Version < 5.17\(abyl.7\)b2
Zyxel ≫ Dx3301-t0 Firmware Version < 5.50\(abvy.5.3\)c0
Zyxel ≫ Dx3300-t1 Firmware Version < 5.50\(abvy.5.3\)c0
Zyxel ≫ Dx3300-t0 Firmware Version < 5.50\(abvy.5.3\)c0
Zyxel ≫ Nr7501 Firmware Version < 1.00\(aceh.1\)c0
Zyxel ≫ Nr7303 Firmware Version < 1.00\(acei.1\)b4
Zyxel ≫ Nr7302 Firmware Version < 1.00\(acha.4\)c0
Zyxel ≫ Nr7103 Firmware Version < 1.00\(accz.4\)c0
Zyxel ≫ Nr5307 Firmware Version < 1.00\(acjt.0\)b6
Zyxel ≫ Nr5103ev2 Firmware Version < 1.00\(aciq.1\)c0
Zyxel ≫ Nr5103 Firmware Version < 4.19\(abyc.6\)c0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.46% | 0.633 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
security@zyxel.com.tw | 7.5 | 3.9 | 3.6 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
The product copies an input buffer to an output buffer without verifying that the size of the input buffer is less than the size of the output buffer, leading to a buffer overflow.