CVE Feed

    Dashboard / CVE / CVE-2022-43389

    CVE-2022-43389

    A buffer overflow vulnerability in the library of the web server in Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an unauthenticated attacker to execute some OS commands or to cause denial-of-service (DoS) conditions on a vulnerable device.

    Published:Jan 11, 2023
    Last Modified:Apr 9, 2025
    EPS:Jan 11, 2023
    EPSS Score:0.00856
    CVSS Score:8.6

    Affected Products

    Vendor
    Zyxel
    Product
    Ep240p
    Vendor
    Zyxel
    Product
    Ep240p Firmware
    Vendor
    Zyxel
    Product
    Lte3202-m437
    Vendor
    Zyxel
    Product
    Lte3202-m437 Firmware
    Vendor
    Zyxel
    Product
    Lte3316-m604
    Vendor
    Zyxel
    Product
    Lte3316-m604 Firmware
    Vendor
    Zyxel
    Product
    Lte7480-m804
    Vendor
    Zyxel
    Product
    Lte7480-m804 Firmware
    Vendor
    Zyxel
    Product
    Lte7490-m904
    Vendor
    Zyxel
    Product
    Lte7490-m904 Firmware
    Vendor
    Zyxel
    Product
    Nebula Fwa510
    Vendor
    Zyxel
    Product
    Nebula Fwa510 Firmware
    Vendor
    Zyxel
    Product
    Nebula Fwa710
    Vendor
    Zyxel
    Product
    Nebula Fwa710 Firmware
    Vendor
    Zyxel
    Product
    Nebula Nr7101
    Vendor
    Zyxel
    Product
    Nebula Nr7101 Firmware
    Vendor
    Zyxel
    Product
    Nr5103
    Vendor
    Zyxel
    Product
    Nr5103 Firmware
    Vendor
    Zyxel
    Product
    Nr5103e
    Vendor
    Zyxel
    Product
    Nr5103e Firmware
    Vendor
    Zyxel
    Product
    Nr7101
    Vendor
    Zyxel
    Product
    Nr7101 Firmware
    Vendor
    Zyxel
    Product
    Nr7102
    Vendor
    Zyxel
    Product
    Nr7102 Firmware
    Vendor
    Zyxel
    Product
    Nr7103
    Vendor
    Zyxel
    Product
    Nr7103 Firmware
    Vendor
    Zyxel
    Product
    Pm7320-b0
    Vendor
    Zyxel
    Product
    Pm7320-b0 Firmware
    Vendor
    Zyxel
    Product
    Pmg5317-t20b
    Vendor
    Zyxel
    Product
    Pmg5317-t20b Firmware
    Vendor
    Zyxel
    Product
    Pmg5617ga
    Vendor
    Zyxel
    Product
    Pmg5617ga Firmware
    Vendor
    Zyxel
    Product
    Pmg5622ga
    Vendor
    Zyxel
    Product
    Pmg5622ga Firmware

    Exploits

    No exploit reference

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High