CVE-2023-27989: Zyxel LTE7480-m804 Firmware

Medium severity, CVSS 6.5. EPSS: 1% chance of exploitation in the next 30 days.

A buffer overflow vulnerability in the CGI program of the Zyxel NR7101 firmware versions prior to V1.00(ABUV.8)C0 could allow a remote authenticated attacker to cause denial of service (DoS) conditions by sending a crafted HTTP request to a vulnerable device.

Affected products

  • Zyxel LTE7480-m804 Firmware: up to and including 1.00\(abra.6\)c0
  • Zyxel LTE7490-m904 Firmware: up to and including 1.00\(abqy.5\)c0
  • Zyxel Nebula NR7101 Firmware: up to and including 1.15\(accc.3\)c0
  • Zyxel NR7101 Firmware: up to and including 1.00\(abuv.7\)c0

Published 2023-06-05. Last modified 2026-06-17.