Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-27989


A buffer overflow vulnerability in the CGI program of the Zyxel NR7101 firmware versions prior to V1.00(ABUV.8)C0 could allow a remote authenticated attacker to cause denial of service (DoS) conditions by sending a crafted HTTP request to a vulnerable device.


Published

2023-06-05T12:15:09.360

Last Modified

2024-11-21T07:53:53.053

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 6.5 (MEDIUM)

Weaknesses
  • Type: Secondary
    CWE-120
  • Type: Primary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System zyxel lte7480-m804_firmware ≤ 1.00\(abra.6\)c0 Yes
Hardware zyxel lte7480-m804 - No
Operating System zyxel lte7490-m904_firmware ≤ 1.00\(abqy.5\)c0 Yes
Hardware zyxel lte7490-m904 - No
Operating System zyxel nr7101_firmware ≤ 1.00\(abuv.7\)c0 Yes
Hardware zyxel nr7101 - No
Operating System zyxel nebula_nr7101_firmware ≤ 1.15\(accc.3\)c0 Yes
Hardware zyxel nebula_nr7101 - No

References