Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2fmw-p7gw-97jj

Опубликовано: 24 фев. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 4.9

Описание

A null pointer dereference vulnerability in the certificate downloader CGI program of the Zyxel VMG3625-T50B firmware versions through 5.50(ABPM.9.6)C0 and the Zyxel WX3100-T0 firmware versions through 5.50(ABVL.4.8)C0 could allow an authenticated attacker with administrator privileges to trigger a denial-of-service (DoS) condition by sending a crafted HTTP request.

A null pointer dereference vulnerability in the certificate downloader CGI program of the Zyxel VMG3625-T50B firmware versions through 5.50(ABPM.9.6)C0 and the Zyxel WX3100-T0 firmware versions through 5.50(ABVL.4.8)C0 could allow an authenticated attacker with administrator privileges to trigger a denial-of-service (DoS) condition by sending a crafted HTTP request.

EPSS

Процентиль: 33%
0.00133
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-476

Связанные уязвимости

CVSS3: 4.9
nvd
около 2 месяцев назад

A null pointer dereference vulnerability in the certificate downloader CGI program of the Zyxel VMG3625-T50B firmware versions through 5.50(ABPM.9.6)C0 and the Zyxel WX3100-T0 firmware versions through 5.50(ABVL.4.8)C0 could allow an authenticated attacker with administrator privileges to trigger a denial-of-service (DoS) condition by sending a crafted HTTP request.

EPSS

Процентиль: 33%
0.00133
Низкий

4.9 Medium

CVSS3

Дефекты

CWE-476