CVE-2023-28768: Zyxel XGS2220-30 Firmware
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
Improper frame handling in the Zyxel XGS2220-30 firmware version V4.80(ABXN.1), XMG1930-30 firmware version V4.80(ACAR.1), and XS1930-10 firmware version V4.80(ABQE.1) could allow an unauthenticated LAN-based attacker to cause denial-of-service (DoS) conditions by sending crafted frames to an affected switch.
Affected products
- Zyxel XGS2220-30 Firmware: version 4.80(abxn.1) only
- Zyxel XGS2220-30f Firmware: version 4.80(abye.1) only
- Zyxel XGS2220-30hp Firmware: version 4.80(abxo.1) only
- Zyxel XGS2220-54 Firmware: version 4.80(abxp.1) only
- Zyxel XGS2220-54fp Firmware: version 4.80(acce.1) only
- Zyxel XGS2220-54hp Firmware: version 4.80(abxq.1) only
- Zyxel XMG1930-30 Firmware: version 4.80(acar.1) only
- Zyxel XMG1930-30hp Firmware: version 4.80(acas.1) only
- Zyxel XS1930-10 Firmware: version 4.80(abqe.1) only
- Zyxel XS1930-12f Firmware: version 4.80(abzv.1) only
- Zyxel XS1930-12hp Firmware: version 4.80(abqf.1) only
Published 2023-08-14. Last modified 2026-06-17.