CVE-2023-28768

MEDIUM

Zyxel XGS2220-30, XMG1930-30, XS1930-10 <4.80 - DoS

Title source: llm
STIX 2.1

Description

Improper frame handling in the Zyxel XGS2220-30 firmware version V4.80(ABXN.1), XMG1930-30 firmware version V4.80(ACAR.1), and XS1930-10 firmware version V4.80(ABQE.1) could allow an unauthenticated LAN-based attacker to cause denial-of-service (DoS) conditions by sending crafted frames to an affected switch.

Scores

CVSS v3 6.5
EPSS 0.0011
EPSS Percentile 29.0%
Attack Vector ADJACENT_NETWORK
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-755
Status published
Products (11)
zyxel/xgs2220-30_firmware 4.80\(abxn.1\)
zyxel/xgs2220-30f_firmware 4.80\(abye.1\)
zyxel/xgs2220-30hp_firmware 4.80\(abxo.1\)
zyxel/xgs2220-54_firmware 4.80\(abxp.1\)
zyxel/xgs2220-54fp_firmware 4.80\(acce.1\)
zyxel/xgs2220-54hp_firmware 4.80\(abxq.1\)
zyxel/xmg1930-30_firmware 4.80\(acar.1\)
zyxel/xmg1930-30hp_firmware 4.80\(acas.1\)
zyxel/xs1930-10_firmware 4.80\(abqe.1\)
zyxel/xs1930-12f_firmware 4.80\(abzv.1\)
... and 1 more
Published Aug 14, 2023
Tracked Since Feb 18, 2026