Zyxel Scr50Axe Firmware vulnerabilities

5 known vulnerabilities affecting zyxel/scr50axe_firmware.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM4

Vulnerabilities

Page 1 of 1
CVE-2024-38268MEDIUMCVSS 4.9fixed in 1.10\(acgn.3\)c02024-09-24
CVE-2024-38268 [MEDIUM] CWE-119 CVE-2024-38268: An improper restriction of operations within the bounds of a memory buffer in the MAC address parser An improper restriction of operations within the bounds of a memory buffer in the MAC address parser of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administrator privileges to cause potential memory corruptions, resulting in a thread crash on an affected device.
nvd
CVE-2024-38266MEDIUMCVSS 4.9fixed in 1.10\(acgn.3\)c02024-09-24
CVE-2024-38266 [MEDIUM] CWE-119 CVE-2024-38266: An improper restriction of operations within the bounds of a memory buffer in the parameter type par An improper restriction of operations within the bounds of a memory buffer in the parameter type parser of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administrator privileges to cause potential memory corruptions, resulting in a thread crash on an affected device.
nvd
CVE-2024-38267MEDIUMCVSS 4.9fixed in 1.10\(acgn.3\)c02024-09-24
CVE-2024-38267 [MEDIUM] CWE-119 CVE-2024-38267: An improper restriction of operations within the bounds of a memory buffer in the IPv6 address parse An improper restriction of operations within the bounds of a memory buffer in the IPv6 address parser of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administrator privileges to cause potential memory corruptions, resulting in a thread crash on an affected device.
nvd
CVE-2024-38269MEDIUMCVSS 4.9fixed in 1.10\(acgn.3\)c02024-09-24
CVE-2024-38269 [MEDIUM] CWE-119 CVE-2024-38269: An improper restriction of operations within the bounds of a memory buffer in the USB file-sharing h An improper restriction of operations within the bounds of a memory buffer in the USB file-sharing handler of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administrator privileges to cause potential memory corruptions, resulting in a thread crash on an affected device.
nvd
CVE-2024-5412HIGHCVSS 7.5fixed in 1.10\(acgn.3\)c02024-09-03
CVE-2024-5412 [HIGH] CWE-120 CVE-2024-5412: A buffer overflow vulnerability in the library "libclinkc" of the Zyxel VMG8825-T50K firmware versio A buffer overflow vulnerability in the library "libclinkc" of the Zyxel VMG8825-T50K firmware version 5.50(ABOM.8)C0 could allow an unauthenticated attacker to cause denial of service (DoS) conditions by sending a crafted HTTP request to a vulnerable device.
nvd