CVE-2023-28768

Improper frame handling in the Zyxel XGS2220-30 firmware version V4.80(ABXN.1), XMG1930-30 firmware version V4.80(ACAR.1), and XS1930-10 firmware versionV4.80(ABQE.1) could allow an unauthenticated LAN-based attacker to cause denial-of-service (DoS) conditions by sending crafted frames to an affected switch.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 MEDIUM
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
ZyxelCNA
6.5 MEDIUM
ADJACENT_NETWORK
LOW
NONE
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 30%
VendorProductVersion
zyxelxgs2220-30_firmware
4.80\(abxn.1\)
zyxelxgs2220-30f_firmware
4.80\(abye.1\)
zyxelxgs2220-30hp_firmware
4.80\(abxo.1\)
zyxelxgs2220-54_firmware
4.80\(abxp.1\)
zyxelxgs2220-54fp_firmware
4.80\(acce.1\)
zyxelxgs2220-54hp_firmware
4.80\(abxq.1\)
zyxelxmg1930-30_firmware
4.80\(acar.1\)
zyxelxmg1930-30hp_firmware
4.80\(acas.1\)
zyxelxs1930-10_firmware
4.80\(abqe.1\)
zyxelxs1930-12f_firmware
4.80\(abzv.1\)
zyxelxs1930-12hp_firmware
4.80\(abqf.1\)
𝑥
= Vulnerable software versions