CVE-2007-4319: CSRF
The management interface in ZyNOS firmware 3.62(WK.6) on the Zyxel Zywall 2 device allows remote authenticated administrators to cause a denial of service (infinite reboot loop) via invalid configuration data. NOTE: this issue might not cross privilege boundaries, and it might be resultant from CSRF; if so, then it should not be included in CVE.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2007-4319?
CVE-2007-4319 is classified as a moderate severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2007-4319?
To fix CVE-2007-4319, ensure that only valid configuration data is inputted and restrict access to the management interface.
What devices are affected by CVE-2007-4319?
CVE-2007-4319 affects devices running ZyNOS firmware version 3.62 and the Zyxel Zywall 2.
Can CVE-2007-4319 be exploited remotely?
Yes, CVE-2007-4319 can be exploited remotely by authenticated administrators via invalid configuration data.
What impact does CVE-2007-4319 have on the system?
The impact of CVE-2007-4319 is a denial of service, resulting in an infinite reboot loop of the affected device.