cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-28769,https://securityvulnerability.io/vulnerability/CVE-2023-28769,Buffer Overflow Vulnerability in Zyxel DX5401-B0 Web Server,"A buffer overflow vulnerability in the 'libclinkc.so' library of the Zyxel DX5401-B0 web server allows remote unauthenticated attackers to execute OS commands, potentially compromising device integrity. Additionally, this vulnerability can be exploited to create denial-of-service conditions, affecting the performance and availability of the device. Users are advised to update to the latest firmware version to mitigate these risks.",Zyxel,Dx5401-b0 Firmware,9.8,CRITICAL,0.17890000343322754,false,,false,false,false,,,false,false,,2023-04-27T00:00:00.000Z,0 CVE-2023-28770,https://securityvulnerability.io/vulnerability/CVE-2023-28770,Sensitive Information Exposure in Zyxel DX5401-B0 Firmware,"A sensitive information exposure vulnerability exists in the Zyxel DX5401-B0 firmware, specifically affecting the CGI component ""Export_Log"" and the binary ""zcmd"". This flaw enables a remote unauthenticated attacker to gain unauthorized access to system files, potentially allowing them to retrieve sensitive data including the supervisor password stored in an encrypted format. This breach underscores the importance of timely firmware updates and the need for robust security measures to protect against unauthorized access.",Zyxel,Dx5401-b0 Firmware,7.5,HIGH,0.06611999869346619,false,,false,false,false,,,false,false,,2023-04-27T00:00:00.000Z,0