漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
N/A
Vulnerability Description
An improper input validation vulnerability in the “Quagga” package of the Zyxel ATP series firmware versions 4.32 through 5.37, USG FLEX series firmware versions 4.50 through 5.37, USG FLEX 50(W) series firmware versions 4.16 through 5.37, USG20(W)-VPN series firmware versions 4.16 through 5.37, and VPN series firmware versions 4.30 through 5.37, could allow an authenticated local attacker to access configuration files on an affected device.
CVSS Information
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Vulnerability Type
输入验证不恰当
Vulnerability Title
Zyxel ATP 输入验证错误漏洞
Vulnerability Description
Zyxel ATP是中国合勤(Zyxel)公司的一款防火墙。 Zyxel ATP 存在输入验证错误漏洞,该漏洞源于Quagga程序包中存在不正确的输入验证漏洞,允许经身份验证的本地攻击者访问受影响设备上的配置文件。受影响的产品和版本:Zyxel ATP series 4.32至5.37版本,USG FLEX series 4.50至5.37版本,USG FLEX 50(W) series 4.16至5.37版本,USG20(W)-VPN series 4.16至5.37版本,VPN series 4.30
CVSS Information
N/A
Vulnerability Type
N/A