CVE-2023-28768

CVSS 3.1 Score 6.5 of 10 (medium)

Details

Published Aug 14, 2023
Updated: Aug 21, 2023
CWE ID 755

Summary

CVE-2023-28768 is a vulnerability affecting Zyxel XGS2220-30, XMG1930-30, and XS1930-10 switches running firmware versions V4.80(ABXN.1), V4.80(ACAR.1), and V4.80(ABQE.1), respectively. An unauthenticated attacker on the LAN can exploit this improper frame handling issue to cause denial-of-service (DoS) conditions by sending specially crafted frames to the affected switches. This vulnerability could potentially disrupt network availability and impact business continuity. It is recommended that users update their firmware to the latest versions to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share