Vulnerability Description
The privilege escalation vulnerability in the Zyxel GS1900-8 firmware version V2.70(AAHH.3) and the GS1900-8HP firmware version V2.70(AAHI.3) could allow an authenticated, local attacker with administrator privileges to execute some system commands as 'root' on a vulnerable device via SSH.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zyxel | Gs1900-8 Firmware | 2.70\(aahh.3\) |
| Zyxel | Gs1900-8 | - |
| Zyxel | Gs1900-8Hp Firmware | 2.70\(aahi.3\) |
| Zyxel | Gs1900-8Hp | - |
| Zyxel | Gs1900-10Hp Firmware | 2.70\(aazi.3\) |
| Zyxel | Gs1900-10Hp | - |
| Zyxel | Gs1900-16 Firmware | 2.70\(aahj.3\) |
| Zyxel | Gs1900-16 | - |
| Zyxel | Gs1900-24 Firmware | 2.70\(aahl.3\) |
| Zyxel | Gs1900-24 | - |
| Zyxel | Gs1900-24E Firmware | 2.70\(aahk.3\) |
| Zyxel | Gs1900-24E | - |
| Zyxel | Gs1900-24Ep Firmware | 2.70\(abto.3\) |
| Zyxel | Gs1900-24Ep | - |
| Zyxel | Gs1900-24Hpv2 Firmware | 2.70\(abtp.3\) |
| Zyxel | Gs1900-24Hpv2 | - |
| Zyxel | Gs1900-48 Firmware | 2.70\(aahn.3\) |
| Zyxel | Gs1900-48 | - |
| Zyxel | Gs1900-48Hpv2 Firmware | 2.70\(abtq.3\) |
| Zyxel | Gs1900-48Hpv2 | - |
Related Weaknesses (CWE)
References
- https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisVendor Advisory
- https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisVendor Advisory
FAQ
What is CVE-2022-45853?
CVE-2022-45853 is a vulnerability with a CVSS score of 6.7 (MEDIUM). The privilege escalation vulnerability in the Zyxel GS1900-8 firmware version V2.70(AAHH.3) and the GS1900-8HP firmware version V2.70(AAHI.3) could allow an authenticated, local attacker with admini...
How severe is CVE-2022-45853?
CVE-2022-45853 has been rated MEDIUM with a CVSS base score of 6.7/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-45853?
Check the references section above for vendor advisories and patch information. Affected products include: Zyxel Gs1900-8 Firmware, Zyxel Gs1900-8, Zyxel Gs1900-8Hp Firmware, Zyxel Gs1900-8Hp, Zyxel Gs1900-10Hp Firmware.