Vulnerabilities > CVE-2020-25014 - Out-of-bounds Write vulnerability in Zyxel Access Points Firmware and ZLD
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
A stack-based buffer overflow in fbwifi_continue.cgi on Zyxel UTM and VPN series of gateways running firmware version V4.30 through to V4.55 allows remote unauthenticated attackers to execute arbitrary code via a crafted http packet.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 14 | |
Hardware | Zyxel
| 50 |
Common Weakness Enumeration (CWE)
References
- https://businessforum.zyxel.com/categories/security-news-and-release
- https://businessforum.zyxel.com/categories/security-news-and-release
- https://www.zyxel.com/support/Zyxel-security-advisory-for-buffer-overflow-vulnerability.shtml
- https://www.zyxel.com/support/Zyxel-security-advisory-for-buffer-overflow-vulnerability.shtml