CVE-2022-0823

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
09/06/2022
Last modified:
27/06/2023

Description

An improper control of interaction frequency vulnerability in Zyxel GS1200 series switches could allow a local attacker to guess the password by using a timing side-channel attack.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:zyxel:gs1200-5_firmware:*:*:*:*:*:*:*:* 2.00\(abkm.1\) (excluding)
cpe:2.3:h:zyxel:gs1200-5:-:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:gs1200-5hp_firmware:*:*:*:*:*:*:*:* 2.00\(abkn.1\) (excluding)
cpe:2.3:h:zyxel:gs1200-5hp:-:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:gs1200-8_firmware:*:*:*:*:*:*:*:* 2.00\(abme.1\) (excluding)
cpe:2.3:h:zyxel:gs1200-8:-:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:gs1200-8hp_firmware:*:*:*:*:*:*:*:* 2.00\(abmf.1\) (excluding)
cpe:2.3:h:zyxel:gs1200-8hp:-:*:*:*:*:*:*:*