PT-2023-3759 · Zyxel · Zyxel Nr7101

Chengfeng Ye

·

Published

2023-06-05

·

Updated

2023-06-12

·

CVE-2023-27989

CVSS v2.0

6.8

Medium

VectorAV:N/AC:L/Au:S/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Zyxel NR7101 versions prior to V1.00(ABUV.8)C0
Description The issue is related to a buffer overflow in the CGI interface of the Zyxel NR7101 firmware. This could allow a remote attacker to cause denial of service (DoS) conditions by sending a crafted HTTP request to a vulnerable device. The exploitation of this issue may result in a denial of service.
Recommendations For versions prior to V1.00(ABUV.8)C0, update to version V1.00(ABUV.8)C0 or later to resolve the issue. As a temporary workaround, consider restricting access to the CGI interface to minimize the risk of exploitation.

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2023-04048
CVE-2023-27989

Affected Products

Zyxel Nr7101