Vulnerability Description
Zyxel USG50 Security Appliance and NWA3560-N Access Point allow remote attackers to cause a denial of service (CPU consumption) via a flood of ICMPv4 Port Unreachable packets.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zyxel | Usg50 Firmware | - |
| Zyxel | Usg50 | - |
| Zyxel | Nwa3560-N Firmware | - |
| Zyxel | Nwa3560-N | - |
Related Weaknesses (CWE)
References
- http://www.securityfocus.com/bid/97105
- http://www.zyxel.com/support/announcement_blacknurse_attack.shtmlPatchVendor Advisory
- https://cxsecurity.com/issue/WLB-2017020177ExploitThird Party Advisory
- http://www.securityfocus.com/bid/97105
- http://www.zyxel.com/support/announcement_blacknurse_attack.shtmlPatchVendor Advisory
- https://cxsecurity.com/issue/WLB-2017020177ExploitThird Party Advisory
FAQ
What is CVE-2016-10227?
CVE-2016-10227 is a vulnerability with a CVSS score of 7.5 (HIGH). Zyxel USG50 Security Appliance and NWA3560-N Access Point allow remote attackers to cause a denial of service (CPU consumption) via a flood of ICMPv4 Port Unreachable packets.
How severe is CVE-2016-10227?
CVE-2016-10227 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2016-10227?
Check the references section above for vendor advisories and patch information. Affected products include: Zyxel Usg50 Firmware, Zyxel Usg50, Zyxel Nwa3560-N Firmware, Zyxel Nwa3560-N.