Beveiligingsadvies

CVE-2023-6397

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-02-20 01:19:27
Laatst bijgewerkt 2024-08-02 08:28:21
Toegewezen door Zyxel
CVSS-score 6.5
Status PUBLISHED

Beschrijving

A null pointer dereference vulnerability in Zyxel ATP series firmware versions from 4.32 through 5.37 Patch 1 and USG FLEX series firmware versions from 4.50 through 5.37 Patch 1 could allow a LAN-based attacker to cause denial-of-service (DoS) conditions by downloading a crafted RAR compressed file onto a LAN-side host if the firewall has the “Anti-Malware” feature enabled.