Vulnerability Description
A flaw in the Zyxel LTE3301-M209 firmware verisons prior to V1.00(ABLG.6)C0 could allow a remote attacker to access the device using an improper pre-configured password if the remote administration feature has been enabled by an authenticated administrator.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zyxel | Lte3301-M209 Firmware | < 1.00\(ablg.6\)c0 |
| Zyxel | Lte3301-M209 | - |
Related Weaknesses (CWE)
References
- https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisPatchVendor Advisory
- https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisPatchVendor Advisory
FAQ
What is CVE-2022-40602?
CVE-2022-40602 is a vulnerability with a CVSS score of 9.8 (CRITICAL). A flaw in the Zyxel LTE3301-M209 firmware verisons prior to V1.00(ABLG.6)C0 could allow a remote attacker to access the device using an improper pre-configured password if the remote administration fe...
How severe is CVE-2022-40602?
CVE-2022-40602 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2022-40602?
Check the references section above for vendor advisories and patch information. Affected products include: Zyxel Lte3301-M209 Firmware, Zyxel Lte3301-M209.