CVE-2022-0823

MEDIUM

Zyxel GS1200 Series Firmware < 2.00 - Timing Side-Channel Password Guessing

Title source: llm
STIX 2.1

Description

An improper control of interaction frequency vulnerability in Zyxel GS1200 series switches could allow a local attacker to guess the password by using a timing side-channel attack.

References (1)

Core 1

Scores

CVSS v3 6.2
EPSS 0.0005
EPSS Percentile 16.1%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Details

CWE
CWE-203
Status published
Products (4)
zyxel/gs1200-5_firmware < 2.00\(abkm.1\)
zyxel/gs1200-5hp_firmware < 2.00\(abkn.1\)
zyxel/gs1200-8_firmware < 2.00\(abme.1\)
zyxel/gs1200-8hp_firmware < 2.00\(abmf.1\)
Published Jun 09, 2022
Tracked Since Feb 18, 2026