CVE-2023-37929
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: security@zyxel.com.tw (Secondary)
Description
The buffer overflow vulnerability in the CGI program of the VMG3625-T50B firmware version V5.50(ABPM.8)C0 could allow an authenticated remote attacker to cause denial of service (DoS) conditions by sending a crafted HTTP request to a vulnerable device.
Affected (32)
Products: Zyxel: Dx3300 T1 Firmware, Dx3301 T0 Firmware, Dx4510 Firmware, Dx5401 B0 Firmware, Dx5401 B1 Firmware, Emg3525 T50b Firmware, Emg5523 T50b Firmware, Emg5723 T50k Firmware, Ex3300 T1 Firmware, Ex3301 T0 Firmware, Ex3500 T0 Firmware, Ex3501 T0 Firmware, Ex3510 Firmware, Ex5401 B0 Firmware, Ex5401 B1 Firmware, Ex5501 B0 Firmware, Ex5510 Firmware, Ex5512 T0 Firmware, Ex5600 T1 Firmware, Ex5601 T0 Firmware, Ex5601 T1 Firmware, Ex7710 B0 Firmware, Vmg3625 T50b Firmware, Vmg3927 T50k Firmware, Vmg8623 T50b Firmware, Vmg8825 T50k Firmware, Ax7501 B0 Firmware, Ax7501 B1 Firmware, Wx3100 T0 Firmware, Wx5600 T0 Firmware, Wx5610 B0 Firmware, Nbg7510 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(aby.4)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Dx3300 T1 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(aby.4)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Dx3301 T0 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.17(abyl.5)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Dx4510 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.17(abyo.5)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Dx5401 B0 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.17(abyo.5)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Dx5401 B1 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(abpm.8)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Emg3525 T50b | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(abpm.8)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Emg5523 T50b | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(abom.8.2)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Emg5723 T50k | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(aby.4)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex3300 T1 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(aby.4)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex3301 T0 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.44(achr.0)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex3500 T0 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.44(achr.0)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex3501 T0 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.17(abup.9)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex3510 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.17(abyo.5)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex5401 B0 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.17(abyo.5)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex5401 B1 | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.17(abry.4)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex5501 B0 | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.17(abqx.8)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex5510 | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.70(aceg.2)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex5512 T0 | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.70(acdz.2)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex5600 T1 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.70(acdz.2)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex5601 T0 | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.70(acdz.2)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex5601 T1 | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.18(acak.0)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ex7710 B0 | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(abpm.8)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Vmg3625 T50b | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(abom.8.2)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Vmg3927 T50k | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(abpm.8)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Vmg8623 T50b | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(abom.8.2)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Vmg8825 T50k | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.17(abpc.4)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ax7501 B0 | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.17(abpc.4)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Ax7501 B1 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.50(abl.3)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Wx3100 T0 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.70(aceb.2)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Wx5600 T0 | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 5.18(acgj.0)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Wx5610 B0 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 1.00(abzy.5)c0 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Nbg7510 | All versions |
References (2)
Source: security@zyxel.com.tw
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Timeline
No history available yet.