CVE-2024-5412

high-risk
Published 2024-09-03

A buffer overflow vulnerability in the library "libclinkc" of the Zyxel VMG8825-T50K firmware version 5.50(ABOM.8)C0 could allow an unauthenticated attacker to cause denial of service (DoS) conditions by sending a crafted HTTP request to a vulnerable device.

Do I need to act?

-
0.80% chance of exploitation
EPSS score — low exploit probability
-
Not on CISA KEV list
No confirmed active exploitation reported to CISA
?
Patch status unknown
Check vendor advisories for fix availability and mitigation guidance
7
CVSS 7.5/10 High
NETWORK / LOW complexity

Affected Products (20)

Nebula Lte3301-Plus Firmware
Nebula Fwa505 Firmware
Nebula Fwa710 Firmware
Nebula Fwa510 Firmware
Wx3401-B0 Firmware
Wx3100-T0 Firmware
Scr50Axe Firmware
Px3321-T1 Firmware
Pm5100-T0 Firmware
Pm3100-T0 Firmware
Ax7501-B1 Firmware
Ax7501-B0 Firmware
Vmg4005-B60A Firmware
Vmg4005-B50A Firmware

Affected Vendors

55
/ 100
high-risk
Severity 26/34 · High
Exploitability 3/34 · Minimal
Exposure 26/34 · High