cbcvebase.
CVE-2024-9197
published 2024-12-03

CVE-2024-9197: A post-authentication buffer overflow vulnerability in the parameter "action" of the CGI program in Zyxel VMG3625-T50B firmware versions through…

medium4.9CVSS 3.1
AVNACLPRHUINSUCNINAH
A post-authentication buffer overflow vulnerability in the parameter "action" of the CGI program in Zyxel VMG3625-T50B firmware versions through V5.50(ABPM.9.2)C0 could allow an authenticated attacker with administrator privileges to cause a temporary denial of service (DoS) condition against the web management interface by sending a crafted HTTP GET request to a vulnerable device if the function ZyEE is enabled.

Affected

38 ranges· showing 25
VendorProductVersion rangeFixed in
zyxelax7501-b0_firmware< 5.17\(abpc.5.3\)c05.17\(abpc.5.3\)c0
zyxelax7501-b1_firmware< 5.17\(abpc.5.3\)c05.17\(abpc.5.3\)c0
zyxeldx3300-t0_firmware< 5.50\(aby.5.4\)c05.50\(aby.5.4\)c0
zyxeldx3300-t1_firmware< 5.50\(aby.5.4\)c05.50\(aby.5.4\)c0
zyxeldx3301-t0_firmware< 5.50\(aby.5.4\)c05.50\(aby.5.4\)c0
zyxeldx4510-b0_firmware< 5.17\(abyl.8\)c05.17\(abyl.8\)c0
zyxeldx4510-b1_firmware< 5.17\(abyl.8\)c05.17\(abyl.8\)c0
zyxeldx5401-b0_firmware< 5.17\(abyo.6.4\)c05.17\(abyo.6.4\)c0
zyxeldx5401-b1_firmware< 5.17\(abyo.6.4\)c05.17\(abyo.6.4\)c0
zyxelee6510-10_firmware< 5.19\(acjq.1\)c05.19\(acjq.1\)c0
zyxelemg3525-t50b_firmware< 5.50\(abpm.9.3\)c05.50\(abpm.9.3\)c0
zyxelemg5523-t50b_firmware< 5.50\(abpm.9.3\)c05.50\(abpm.9.3\)c0
zyxelemg5723-t50k_firmware< 5.50\(abom.8.5\)c05.50\(abom.8.5\)c0
zyxelex3300-t0_firmware< 5.50\(aby.5.4\)c05.50\(aby.5.4\)c0
zyxelex3300-t1_firmware< 5.50\(aby.5.4\)c05.50\(aby.5.4\)c0
zyxelex3301-t0_firmware< 5.50\(aby.5.4\)c05.50\(aby.5.4\)c0
zyxelex3500-t0_firmware< 5.44\(achr.3\)c05.44\(achr.3\)c0
zyxelex3501-t0_firmware< 5.44\(achr.3\)c05.44\(achr.3\)c0
zyxelex3510-b0_firmware< 5.17\(abup.13\)c05.17\(abup.13\)c0
zyxelex3510-b1_firmware< 5.17\(abup.13\)c05.17\(abup.13\)c0
zyxelex3600-t0_firmware< 5.70\(acif.0.4\)c05.70\(acif.0.4\)c0
zyxelex5401-b0_firmware< 5.17\(abyo.6.4\)c05.17\(abyo.6.4\)c0
zyxelex5401-b1_firmware< 5.17\(abyo.6.4\)c05.17\(abyo.6.4\)c0
zyxelex5501-b0_firmware< 5.17\(abry.5.3\)c05.17\(abry.5.3\)c0
zyxelex5510-b0_firmware< 5.17\(abqx.11\)c05.17\(abqx.11\)c0