VYPR

Nebula Nr5101 Firmware

by Zyxel

CVEs (6)

  • CVE-2024-8748HigDec 3, 2024
    risk 0.49cvss 7.5epss 0.01

    A buffer overflow vulnerability in the packet parser of the third-party library "libclinkc" in Zyxel VMG8825-T50K firmware versions through V5.50(ABOM.8.4)C0 could allow an attacker to cause a temporary denial of service (DoS) condition against the web management interface by…

  • CVE-2026-1460HigApr 28, 2026
    risk 0.47cvss 7.2epss 0.01

    A post-authentication command injection vulnerability in the “DomainName” parameter of the DHCP configuration file in Zyxel DX3301-T0 and EX3301-T0 firmware versions through 5.50(ABVY.7.1)C0 could allow an authenticated attacker with administrator privileges to execute OS…

  • CVE-2022-43392MedJan 11, 2023
    risk 0.42cvss 6.5epss 0.01

    A buffer overflow vulnerability in the parameter of web server in Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an authenticated attacker to cause denial-of-service (DoS) conditions by sending a crafted authorization request.

  • CVE-2022-43391MedJan 11, 2023
    risk 0.42cvss 6.5epss 0.01

    A buffer overflow vulnerability in the parameter of the CGI program in Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an authenticated attacker to cause denial-of-service (DoS) conditions by sending a crafted HTTP request.

  • CVE-2024-0816MedMay 21, 2024
    risk 0.36cvss 5.5epss 0.00

    The buffer overflow vulnerability in the DX3300-T1 firmware version V5.50(ABVY.4)C0 could allow an authenticated local attacker to cause denial of service (DoS) conditions by executing the CLI command with crafted strings on an affected device.

  • CVE-2022-43390MedJan 11, 2023
    risk 0.35cvss 5.4epss 0.01

    A command injection vulnerability in the CGI program of Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an authenticated attacker to execute some OS commands on a vulnerable device by sending a crafted HTTP request.