CVE-2023-28769: Buffer Overflow
The buffer overflow vulnerability in the library “libclinkc.so” of the web server “zhttpd” in Zyxel DX5401-B0 firmware versions prior to V5.17(ABYO.1)C0 could allow a remote unauthenticated attacker to execute some OS commands or to cause denial-of-service (DoS) conditions on a vulnerable device.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this issue?
The vulnerability ID is CVE-2023-28769.
What is the affected software?
The affected software is Zyxel DX5401-B0 firmware versions prior to V5.17(ABYO.1)C0.
What is the severity of CVE-2023-28769?
The severity of CVE-2023-28769 is critical with a CVSS score of 9.8.
What is the impact of this vulnerability?
This vulnerability could allow a remote unauthenticated attacker to execute OS commands or cause denial-of-service conditions on a vulnerable device.
Is there a fix available for this vulnerability?
Yes, the fix for this vulnerability is to update the Zyxel DX5401-B0 firmware to version V5.17(ABYO.1)C0 or later.