Vulnerability Description
The buffer overflow vulnerability in the DX3300-T1 firmware version V5.50(ABVY.4)C0 could allow an authenticated local attacker to cause denial of service (DoS) conditions by executing the CLI command with crafted strings on an affected device.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zyxel | Lte3202-M437 Firmware | 1.00\(abwf.3\)c0 |
| Zyxel | Lte3202-M437 | - |
| Zyxel | Lte3301-Plus Firmware | 1.00\(abqu.5\)c0 |
| Zyxel | Lte3301-Plus | - |
| Zyxel | Lte5388-M804 Firmware | 1.00\(absq.4\)c0 |
| Zyxel | Lte5388-M804 | - |
| Zyxel | Lte5398-M904 Firmware | 1.00\(abq.4\)c0 |
| Zyxel | Lte5398-M904 | - |
| Zyxel | Lte7240-M403 Firmware | 2.00\(abmg.7\)c0 |
| Zyxel | Lte7240-M403 | - |
| Zyxel | Lte7480-M804 Firmware | 1.00\(abra.8\)c0 |
| Zyxel | Lte7480-M804 | - |
| Zyxel | Lte7490-M904 Firmware | 1.00\(abqy.7\)c0 |
| Zyxel | Lte7490-M904 | - |
| Zyxel | Nr5103 Firmware | 4.19\(abyc.5\)c0 |
| Zyxel | Nr5103 | - |
| Zyxel | Nr5103E Firmware | 1.00\(acdj.1\)b3 |
| Zyxel | Nr5103E | - |
| Zyxel | Nr5103Ev2 Firmware | 1.00\(aciq.0\)c0 |
| Zyxel | Nr5103Ev2 | - |
Related Weaknesses (CWE)
References
- https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisVendor Advisory
- https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisVendor Advisory
FAQ
What is CVE-2024-0816?
CVE-2024-0816 is a vulnerability with a CVSS score of 5.5 (MEDIUM). The buffer overflow vulnerability in the DX3300-T1 firmware version V5.50(ABVY.4)C0 could allow an authenticated local attacker to cause denial of service (DoS) conditions by executing the CLI command...
How severe is CVE-2024-0816?
CVE-2024-0816 has been rated MEDIUM with a CVSS base score of 5.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-0816?
Check the references section above for vendor advisories and patch information. Affected products include: Zyxel Lte3202-M437 Firmware, Zyxel Lte3202-M437, Zyxel Lte3301-Plus Firmware, Zyxel Lte3301-Plus, Zyxel Lte5388-M804 Firmware.