Vulnerabilities > CVE-2024-38266 - Out-of-bounds Write vulnerability in Zyxel products

047910
CVSS 4.9 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
HIGH
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
zyxel
CWE-787

Summary

An improper restriction of operations within the bounds of a memory buffer in the parameter type parser of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administrator privileges to cause potential memory corruptions, resulting in a thread crash on an affected device.

Vulnerable Configurations

Part Description Count
OS
Zyxel
60
Hardware
Zyxel
42

Common Weakness Enumeration (CWE)