An improper control of interaction frequency vulnerability in Zyxel GS1200 series switches could allow a local attacker to guess the password by using a timing side-channel attack.
References
Link | Resource |
---|---|
https://www.zyxel.com/support/Zyxel-security-advisory-for-password-guessing-vulnerability-of-GS1200-series-switches.shtml | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Information
Published : 2022-06-09 09:15
Updated : 2022-06-15 09:04
NVD link : CVE-2022-0823
Mitre link : CVE-2022-0823
JSON object : View
CWE
CWE-203
Observable Discrepancy
Products Affected
zyxel
- gs1200-5hp_firmware
- gs1200-5
- gs1200-8hp_firmware
- gs1200-8_firmware
- gs1200-8
- gs1200-5_firmware
- gs1200-8hp
- gs1200-5hp