Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2023-4397


A buffer overflow vulnerability in the Zyxel ATP series firmware version 5.37, USG FLEX series firmware version 5.37, USG FLEX 50(W) series firmware version 5.37, and USG20(W)-VPN series firmware version 5.37, could allow an authenticated local attacker with administrator privileges to cause denial-of-service (DoS) conditions by executing the CLI command with crafted strings on an affected device.


Published

2023-11-28T02:15:42.990

Last Modified

2024-11-21T08:35:03.707

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 4.4 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-120

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Operating System zyxel zld 5.37 Yes
Hardware zyxel atp100 - No
Hardware zyxel atp100w - No
Hardware zyxel atp200 - No
Hardware zyxel atp500 - No
Hardware zyxel atp700 - No
Hardware zyxel atp800 - No
Operating System zyxel zld 5.37 Yes
Hardware zyxel usg_flex_100 - No
Hardware zyxel usg_flex_100w - No
Hardware zyxel usg_flex_200 - No
Hardware zyxel usg_flex_50 - No
Hardware zyxel usg_flex_500 - No
Hardware zyxel usg_flex_50w - No
Hardware zyxel usg_flex_700 - No
Operating System zyxel zld 5.37 Yes
Hardware zyxel usg_20w-vpn - No
Hardware zyxel vpn50w - No

References