← Back

CVE-2023-22915

nvd nist
Published: Apr 24, 2023Modified: Nov 21, 2024

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

A buffer overflow vulnerability in the “fbwifi_forward.cgi” CGI program of Zyxel USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.30 through 5.35, USG20(W)-VPN firmware versions 4.30 through 5.35, and VPN series firmware versions 4.30 through 5.35, which could allow a remote unauthenticated attacker to cause DoS conditions by sending a crafted HTTP request if the Facebook WiFi function were enabled on an affected device.

Affected (12)

12 products
Usg Flex 100 Firmware
Usg Flex 100w Firmware
Usg Flex 200 Firmware
Usg Flex 50 Firmware
Usg Flex 50w Firmware
Usg Flex 500 Firmware
Usg Flex 700 Firmware
Vpn100 Firmware
Vpn1000 Firmware
Vpn300 Firmware
Vpn50 Firmware
Usg 20w Vpn Firmware
Configuration A
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.50 to 5.35
Running on/withPlatform Versions
Zyxel
Usg Flex 100
All versions
Configuration B
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.50 to 5.35
Running on/withPlatform Versions
Zyxel
Usg Flex 100w
All versions
Configuration C
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.50 to 5.35
Running on/withPlatform Versions
Zyxel
Usg Flex 200
All versions
Configuration D
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.50 to 5.35
Running on/withPlatform Versions
Zyxel
Usg Flex 50
All versions
Configuration E
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.30 to 5.35
Running on/withPlatform Versions
Zyxel
Usg Flex 50w
All versions
Configuration F
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.50 to 5.35
Running on/withPlatform Versions
Zyxel
Usg Flex 500
All versions
Configuration G
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.50 to 5.35
Running on/withPlatform Versions
Zyxel
Usg Flex 700
All versions
Configuration H
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.50 to 5.35
Running on/withPlatform Versions
Zyxel
Vpn100
All versions
Configuration I
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.50 to 5.35
Running on/withPlatform Versions
Zyxel
Vpn1000
All versions
Configuration J
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.50 to 5.35
Running on/withPlatform Versions
Zyxel
Vpn300
All versions
Configuration K
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.50 to 5.35
Running on/withPlatform Versions
Zyxel
Vpn50
All versions
Configuration L
1 vulnerable · 1 platform
Vulnerable SoftwareAffected Versions
From 4.30 to 5.35
Running on/withPlatform Versions
Zyxel
Usg 20w Vpn
All versions

Timeline

No history available yet.