Medium severity4.9NVD Advisory· Published Sep 24, 2024· Updated Jun 17, 2026
CVE-2024-38266
CVE-2024-38266
Description
An improper restriction of operations within the bounds of a memory buffer in the parameter type parser of the Zyxel VMG8825-T50K firmware versions through 5.50(ABOM.8)C0 could allow an authenticated attacker with administrator privileges to cause potential memory corruptions, resulting in a thread crash on an affected device.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
44- cpe:2.3:o:zyxel:emg3525-t50b_firmware:*:*:*:*:*:*:*:*Range: <5.50\(abpm.9\)c0
- cpe:2.3:o:zyxel:emg5523-t50b_firmware:*:*:*:*:*:*:*:*Range: <5.50\(abpm.9\)c0
- cpe:2.3:o:zyxel:emg5723-t50k_firmware:*:*:*:*:*:*:*:*Range: <5.50\(abom.8\)c0
- cpe:2.3:o:zyxel:ex3600-t0_firmware:*:*:*:*:*:*:*:*Range: <5.70\(acif.0.2\)c0
- cpe:2.3:o:zyxel:pm7300-t0_firmware:*:*:*:*:*:*:*:*Range: <5.42\(abyy.2.1\)c0
- cpe:2.3:o:zyxel:vmg3625-t50b_firmware:*:*:*:*:*:*:*:*Range: <5.50\(abpm.9\)c0
- cpe:2.3:o:zyxel:vmg3927-t50k_firmware:*:*:*:*:*:*:*:*Range: <5.50\(abom.8\)c0
- cpe:2.3:o:zyxel:vmg4005-b50a_firmware:*:*:*:*:*:*:*:*Range: <5.17\(abqa.2\)c0
- cpe:2.3:o:zyxel:vmg4005-b60a_firmware:*:*:*:*:*:*:*:*Range: <5.17\(abqa.2\)c0
- cpe:2.3:o:zyxel:vmg8623-t50b_firmware:*:*:*:*:*:*:*:*Range: <5.50\(abpm.9\)c0
- cpe:2.3:o:zyxel:vmg8825-t50k_firmware:*:*:*:*:*:*:*:*Range: <5.50\(abom.8\)c0
- cpe:2.3:o:zyxel:wx3100-t0_firmware:*:*:*:*:*:*:*:*Range: <5.50\(abvl.4.3\)c0
- cpe:2.3:o:zyxel:wx3401-b0_firmware:*:*:*:*:*:*:*:*Range: <5.17\(abve.2.5\)c0
- cpe:2.3:o:zyxel:wx5600-t0_firmware:*:*:*:*:*:*:*:*Range: <5.70\(aceb.3.2\)c0
<=5.50(ABOM.8)C0+ 1 more
- (no CPE)range: <=5.50(ABOM.8)C0
- (no CPE)range: <= 5.50(ABOM.8)C0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.