Zyxel Releases Security Update
Zyxel releases security update addressing a Critical vulnerability in 4G LTE indoor routers
Summary
Zyxel releases security update addressing a Critical vulnerability in 4G LTE indoor routers
Affected platforms
The following platforms are known to be affected:
Threat details
Introduction
Zyxel has released security update to address a Critical vulnerability in 4G LTE indoor routers LTE3202-M437 and LTE3316-M604. The vulnerability known as CVE-2023-22920, has a CVSSv3 score of 9.8 and relates to a security misconfiguration due to a factory default intended for testing purposes. A remote attacker could leverage this vulnerability to access an affected device using Telnet.
Remediation advice
Affected organisations are encouraged to review Zyxel's security advisory and apply relevant updates and mitigations.
Definitive source of threat updates
Last edited: 24 February 2023 12:31 pm