CVE-2022-45853: Medium severity zyxel gs1900-8hp firmware vulnerability
REJECT This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
Other sources
The privilege escalation vulnerability in the Zyxel GS1900-8 firmware version
V2.70(AAHH.3) and the GS1900-8HP firmware version V2.70(AAHI.3) could allow an authenticated, local attacker with administrator privileges to execute some system commands as 'root' on a vulnerable device via SSH.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-45853?
CVE-2022-45853 is a privilege escalation vulnerability in the Zyxel GS1900-8 and GS1900-8HP switches.
What is the severity of CVE-2022-45853?
The severity of CVE-2022-45853 is medium.
Which versions of the Zyxel GS1900-8 firmware are affected by CVE-2022-45853?
The Zyxel GS1900-8 firmware version V2.70(AAHH.3) is affected by CVE-2022-45853.
Which versions of the Zyxel GS1900-8HP firmware are affected by CVE-2022-45853?
The Zyxel GS1900-8HP firmware version V2.70(AAHI.3) is affected by CVE-2022-45853.
How can I fix CVE-2022-45853 vulnerability?
To fix the CVE-2022-45853 vulnerability, it is recommended to update the Zyxel GS1900-8 and GS1900-8HP firmware to version V2.71 or later.