ZeroHour

CVE-2022-43393

CVSS 3.1
8.2 high
EPSS
<1%p45
Published
()
Modified
Description

An improper check for unusual or exceptional conditions in the HTTP request processing function of Zyxel GS1920-24v2 firmware prior to V4.70(ABMH.8)C0, which could allow an unauthenticated attacker to corrupt the contents of the memory and result in a denial-of-service (DoS) condition on a vulnerable device.

Vendors
zyxel
Products
gs1350-6hp firmware, gs1350-12hp firmware, gs1350-18hp firmware, gs1350-26hp firmware, gs1915-8 firmware, gs1915-8ep firmware, gs1915-24e firmware, gs1915-24ep firmware, gs1920-24v2 firmware, gs1920-48v2 firmware, gs1920-24hpv2 firmware, gs1920-48hpv2 firmware
Weakness
CWE-754
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:H

In the news

No ingested article mentions this CVE yet.