PT-2023-2587 · Zyxel · Zyxel Nbg-418N V2

Toni Koivunen

·

Published

2023-01-10

·

Updated

2023-05-06

·

CVE-2023-22922

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Zyxel NBG-418N v2 versions prior to V1.00(AARP.14)C0
Description A buffer overflow vulnerability could allow a remote unauthenticated attacker to cause DoS conditions by sending crafted packets if Telnet is enabled on a vulnerable device. The issue is related to the implementation of the Telnet network protocol in the Zyxel NBG-418N v2 firmware.
Recommendations For Zyxel NBG-418N v2 versions prior to V1.00(AARP.14)C0, update to a version that includes the fix for this issue. As a temporary workaround, consider disabling Telnet on the device until a patch is available.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2023-02403
CVE-2023-22922

Affected Products

Zyxel Nbg-418N V2