A vulnerability in specific versions of Zyxel NBG6818, NBG7815, WSQ20, WSQ50, WSQ60, and WSR30 firmware with pre-configured password management could allow an attacker to obtain root access of the device, if the local attacker dismantles the device and uses a USB-to-UART cable to connect the device, or if the remote assistance feature had been enabled by an authenticated user.
oryginał ENCVSS Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HZyxel Nbg6818
HWZyxelwszystkie wersjeZyxel Nbg6818 Firmware
OSZyxel< 1.00\(absc.5\)c0Zyxel Nbg7815
HWZyxelwszystkie wersjeZyxel Nbg7815 Firmware
OSZyxel< 1.00\(absk.7\)c0Zyxel Wsq20
HWZyxelwszystkie wersjeZyxel Wsq20 Firmware
OSZyxel< 1.00\(abof.11\)c0Zyxel Wsq50
HWZyxelwszystkie wersjeZyxel Wsq50 Firmware
OSZyxel< 2.20\(abkj.7\)c0Zyxel Wsq60
HWZyxelwszystkie wersjeZyxel Wsq60 Firmware
OSZyxel< 2.20\(abnd.8\)c0Zyxel Wsr30
HWZyxelwszystkie wersjeZyxel Wsr30 Firmware
OSZyxel< 1.00\(abmy.12\)c0
🟢
PATCH DOSTĘPNY
Aktualizacja od producenta gotowa. Wdrożenie w ramach standardowego cyklu.
Tagi
Auth Bypass
Powiązane podatności
CVE-2023-27992CRITICAL9.8⚠ KEVPL ✓ten sam vendor
Zyxel NAS — pre-authentication command injection w firmware NAS326/540/542
CVE-2023-33010CRITICAL9.8⚠ KEVPL ✓ten sam vendor
Buffer overflow w firmware Zyxel — RCE bez uwierzytelnienia (firewalle/VPN)
CVE-2023-33009CRITICAL9.8⚠ KEVPL ✓ten sam vendor
Buffer overflow w firmware Zyxel — RCE bez uwierzytelnienia
CVE-2023-28771CRITICAL9.8⚠ KEVPL ✓ten sam vendor
Zyxel Firewall/VPN — zdalny command injection bez uwierzytelnienia (RCE)
CVE-2022-30525CRITICAL9.8⚠ KEVPL ✓ten sam vendor
Command injection w firmware Zyxel USG FLEX i VPN — zdalne wykonanie poleceń OS