A buffer overflow vulnerability in the library of the web server in Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an unauthenticated attacker to execute some OS commands or to cause denial-of-service (DoS) conditions on a vulnerable device.

Project Subscriptions

Vendors Products
Ep240p Firmware Subscribe
Lte3202-m437 Subscribe
Lte3202-m437 Firmware Subscribe
Lte3316-m604 Subscribe
Lte3316-m604 Firmware Subscribe
Lte7480-m804 Subscribe
Lte7480-m804 Firmware Subscribe
Lte7490-m904 Subscribe
Lte7490-m904 Firmware Subscribe
Nebula Fwa510 Subscribe
Nebula Fwa510 Firmware Subscribe
Nebula Fwa710 Subscribe
Nebula Fwa710 Firmware Subscribe
Nebula Nr7101 Subscribe
Nebula Nr7101 Firmware Subscribe
Nr5103 Firmware Subscribe
Nr5103e Subscribe
Nr5103e Firmware Subscribe
Nr7101 Firmware Subscribe
Nr7102 Firmware Subscribe
Nr7103 Firmware Subscribe
Pm7320-b0 Subscribe
Pm7320-b0 Firmware Subscribe
Pmg5317-t20b Subscribe
Pmg5317-t20b Firmware Subscribe
Pmg5617ga Subscribe
Pmg5617ga Firmware Subscribe
Pmg5622ga Subscribe
Pmg5622ga Firmware Subscribe
Advisories
Source ID Title
EUVD EUVD EUVD-2022-46428 A buffer overflow vulnerability in the library of the web server in Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an unauthenticated attacker to execute some OS commands or to cause denial-of-service (DoS) conditions on a vulnerable device.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

Wed, 09 Apr 2025 14:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'yes', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: Zyxel

Published:

Updated: 2025-04-09T13:52:22.737Z

Reserved: 2022-10-18T00:00:00.000Z

Link: CVE-2022-43389

cve-icon Vulnrichment

Updated: 2024-08-03T13:32:58.640Z

cve-icon NVD

Status : Modified

Published: 2023-01-11T02:15:11.073

Modified: 2024-11-21T07:26:22.850

Link: CVE-2022-43389

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses