CVE-2024-0816

MEDIUM

DX3300-T1 <5.50(ABVY.4)C0 - Buffer Overflow

Title source: llm
STIX 2.1

Description

The buffer overflow vulnerability in the DX3300-T1 firmware version V5.50(ABVY.4)C0 could allow an authenticated local attacker to cause denial of service (DoS) conditions by executing the CLI command with crafted strings on an affected device.

Scores

CVSS v3 5.5
EPSS 0.0008
EPSS Percentile 24.4%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H

CISA SSVC

Vulnrichment
Exploitation none
Automatable no
Technical Impact partial

Details

CWE
CWE-120
Status published
Products (50)
zyxel/ax7501-b0_firmware 5.17\(abpc.4\)c0
zyxel/ax7501-b1_firmware 5.17\(abpc.4\)c0
zyxel/dx3300-t1_firmware 5.50\(aby.4\)c0
zyxel/dx3301-t0_firmware 5.50\(aby.4\)c0
zyxel/dx4510_firmware 5.17\(abyl.6\)c0
zyxel/dx5401-b0_firmware 5.17\(abyo.5\)c0
zyxel/dx5401-b1_firmware 5.17\(abyo.5\)c0
zyxel/emg3525-t50b_firmware 5.50\(abpm.8\)c0
zyxel/emg5523-t50b_firmware 5.50\(abpm.8\)c0
zyxel/emg5723-t50k_firmware 5.50\(abom.8.2\)c0
... and 40 more
Published May 21, 2024
Tracked Since Feb 18, 2026