Lucene search

K
nvd[email protected]NVD:CVE-2023-28768
HistoryAug 14, 2023 - 5:15 p.m.

CVE-2023-28768

2023-08-1417:15:10
CWE-755
web.nvd.nist.gov
5
improper frame handling
denial-of-service
unauthenticated attacker
lan-based
crafted frames

CVSS3

6.5

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0

Percentile

12.7%

Improper frame handling in the Zyxel XGS2220-30 firmware version V4.80(ABXN.1), XMG1930-30 firmware version V4.80(ACAR.1), and XS1930-10 firmware versionΒ V4.80(ABQE.1) could allow an unauthenticated LAN-based attacker to cause denial-of-service (DoS) conditions by sending crafted frames to an affected switch.

Affected configurations

Nvd
Node
zyxelxgs2220-30Match-
AND
zyxelxgs2220-30_firmwareMatch4.80\(abxn.1\)
Node
zyxelxgs2220-30fMatch-
AND
zyxelxgs2220-30f_firmwareMatch4.80\(abye.1\)
Node
zyxelxgs2220-30hpMatch-
AND
zyxelxgs2220-30hp_firmwareMatch4.80\(abxo.1\)
Node
zyxelxgs2220-54Match-
AND
zyxelxgs2220-54_firmwareMatch4.80\(abxp.1\)
Node
zyxelxgs2220-54fpMatch-
AND
zyxelxgs2220-54fp_firmwareMatch4.80\(acce.1\)
Node
zyxelxgs2220-54hpMatch-
AND
zyxelxgs2220-54hp_firmwareMatch4.80\(abxq.1\)
Node
zyxelxmg1930-30Match-
AND
zyxelxmg1930-30_firmwareMatch4.80\(acar.1\)
Node
zyxelxmg1930-30hp_firmwareMatch4.80\(acas.1\)
AND
zyxelxmg1930-30hpMatch-
Node
zyxelxs1930-10_firmwareMatch4.80\(abqe.1\)
AND
zyxelxs1930-10Match-
Node
zyxelxs1930-12f_firmwareMatch4.80\(abzv.1\)
AND
zyxelxs1930-12fMatch-
Node
zyxelxs1930-12hp_firmwareMatch4.80\(abqf.1\)
AND
zyxelxs1930-12hpMatch-
VendorProductVersionCPE
zyxelxgs2220-30-cpe:2.3:h:zyxel:xgs2220-30:-:*:*:*:*:*:*:*
zyxelxgs2220-30_firmware4.80(abxn.1)cpe:2.3:o:zyxel:xgs2220-30_firmware:4.80\(abxn.1\):*:*:*:*:*:*:*
zyxelxgs2220-30f-cpe:2.3:h:zyxel:xgs2220-30f:-:*:*:*:*:*:*:*
zyxelxgs2220-30f_firmware4.80(abye.1)cpe:2.3:o:zyxel:xgs2220-30f_firmware:4.80\(abye.1\):*:*:*:*:*:*:*
zyxelxgs2220-30hp-cpe:2.3:h:zyxel:xgs2220-30hp:-:*:*:*:*:*:*:*
zyxelxgs2220-30hp_firmware4.80(abxo.1)cpe:2.3:o:zyxel:xgs2220-30hp_firmware:4.80\(abxo.1\):*:*:*:*:*:*:*
zyxelxgs2220-54-cpe:2.3:h:zyxel:xgs2220-54:-:*:*:*:*:*:*:*
zyxelxgs2220-54_firmware4.80(abxp.1)cpe:2.3:o:zyxel:xgs2220-54_firmware:4.80\(abxp.1\):*:*:*:*:*:*:*
zyxelxgs2220-54fp-cpe:2.3:h:zyxel:xgs2220-54fp:-:*:*:*:*:*:*:*
zyxelxgs2220-54fp_firmware4.80(acce.1)cpe:2.3:o:zyxel:xgs2220-54fp_firmware:4.80\(acce.1\):*:*:*:*:*:*:*
Rows per page:
1-10 of 221

CVSS3

6.5

Attack Vector

ADJACENT

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0

Percentile

12.7%

Related for NVD:CVE-2023-28768