8

CVE-2023-34141

A command injection vulnerability in the access point (AP) management feature of the Zyxel ATP series firmware versions 5.00 through 5.36 Patch 2, USG FLEX series firmware versions 5.00 through 5.36 Patch 2,  USG FLEX 50(W) series firmware versions 5.00 through 5.36 Patch 2, USG20(W)-VPN series firmware versions 5.00 through 5.36 Patch 2, VPN series firmware versions 5.00 through 5.36 Patch 2, NXC2500 firmware versions 6.10(AAIG.0) through 6.10(AAIG.3), and NXC5500 firmware versions 6.10(AAOS.0) through 6.10(AAOS.4), could allow an unauthenticated, LAN-based attacker to execute some OS commands on an affected device if the attacker could trick an authorized administrator to add their IP address to the managed AP list in advance.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Zyxel ≫ Usg 20w-vpn Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Usg 20w-vpn Version -
Zyxel ≫ Usg 2200-vpn Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Usg 2200-vpn Version -
Zyxel ≫ Usg Flex 100 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Usg Flex 100 Version -
Zyxel ≫ Usg Flex 100w Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Usg Flex 100w Version -
Zyxel ≫ Usg Flex 200 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Usg Flex 200 Version -
Zyxel ≫ Usg Flex 50 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Usg Flex 50 Version -
Zyxel ≫ Usg Flex 500 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Usg Flex 500 Version -
Zyxel ≫ Usg Flex 50w Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Usg Flex 50w Version -
Zyxel ≫ Usg Flex 700 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Usg Flex 700 Version -
Zyxel ≫ Zywall Atp100 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Atp100 Version -
Zyxel ≫ Zywall Atp100w Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Atp100w Version -
Zyxel ≫ Zywall Atp200 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Atp200 Version -
Zyxel ≫ Zywall Atp500 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Atp500 Version -
Zyxel ≫ Zywall Atp700 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Atp700 Version -
Zyxel ≫ Zywall Atp800 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Atp800 Version -
Zyxel ≫ Zywall Vpn100 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Vpn100 Version -
Zyxel ≫ Zywall Vpn2s Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Vpn2s Version -
Zyxel ≫ Zywall Vpn300 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Vpn300 Version -
Zyxel ≫ Zywall Vpn50 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Vpn50 Version -
Zyxel ≫ Zywall Vpn 100 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Vpn 100 Version -
Zyxel ≫ Zywall Vpn 300 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Vpn 300 Version -
Zyxel ≫ Zywall Vpn 50 Firmware Version >= 5.00 < 5.37
   Zyxel ≫ Zywall Vpn 50 Version -
Zyxel ≫ Nxc2500 Firmware Version >= 6.10\(aaig.0\) <= 6.10\(aaig.3\)
   Zyxel ≫ Nxc2500 Version -
Zyxel ≫ Nxc5500 Firmware Version >= 6.10\(aaos.0\) <= 6.10\(aaos.4\)
   Zyxel ≫ Nxc5500 Version -
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.68% 0.485
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
security@zyxel.com.tw 8 2.1 5.9
CVSS:3.1/AV:A/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')

The product constructs all or part of an OS command using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the intended OS command when it is sent to a downstream component.

https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-multiple-vulnerabilities-in-firewalls-and-wlan-controllers
Vendor Advisory