← Back to CVE List
Vulnerability Intelligence Report

CVE-2024-38268

An improper restriction of operations within the bounds of a memory buffer in the MAC address parser of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administrator privileges to cause potential memory corruptions, resulting in a thread crash on an affected device.

No Active Exploit Signals
CVSS Base Score
4.9
MEDIUM
Exploitability:1.3
Impact Score:3.6
EPSS Probability:0.41%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—

Weaknesses (CWE)

CWE-119 ↗CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

Affected Products & Versions

Vendor Product Affected Versions
Zyxel VMG8825-T50K firmware <= 5.50(ABOM.8)C0 (affected)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.414%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityZyxel Corporation · Vendor · Taiwan
Reserved2024-06-12T09:11:12
Published2024-09-24T01:35:22
Last Updated2024-09-24T15:37:58

LINK COPIED TO CLIPBOARD