Lucene search

K
cvelistZdiCVELIST:CVE-2018-1164
HistoryFeb 21, 2018 - 2:00 p.m.

CVE-2018-1164

2018-02-2114:00:00
CWE-306
zdi
www.cve.org

9.4 High

AI Score

Confidence

High

0.046 Low

EPSS

Percentile

92.6%

This vulnerability allows remote attackers to cause a denial-of-service condition on vulnerable installations of ZyXEL P-870H-51 DSL Router 1.00(AWG.3)D5. Authentication is not required to exploit this vulnerability. The specific flaw exists within numerous exposed CGI endpoints. The vulnerability is caused by improper access controls that allow access to critical functions without authentication. An attacker can use this vulnerability to reboot affected devices, along with other actions. Was ZDI-CAN-4540.

CNA Affected

[
  {
    "product": "ZyXEL P-870H-51 DSL Router",
    "vendor": "ZyXEL",
    "versions": [
      {
        "status": "affected",
        "version": "1.00(AWG.3)D5"
      }
    ]
  }
]

9.4 High

AI Score

Confidence

High

0.046 Low

EPSS

Percentile

92.6%

Related for CVELIST:CVE-2018-1164