V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2023-28771
CVE
Critical KEVConfirmedExploit available

Improper error message handling in Zyxel ZyWALL/USG series firmware versions 4.60 through 4.73, VPN series firmware versions 4.60 through 5…

CVSS
9.8
Critical
EPSS
0.94
p99
Published
2023-01-01
Updated
2023-05-31
Description

Improper error message handling in Zyxel ZyWALL/USG series firmware versions 4.60 through 4.73, VPN series firmware versions 4.60 through 5.35, USG FLEX series firmware versions 4.60 through 5.35, and ATP series firmware versions 4.60 through 5.35, which could allow an unauthenticated attacker to execute some OS commands remotely by sending crafted packets to an affected device.

Tags · CWE
KEVPre-auth
CWE-78
CAPEC-6
CAPEC-15
CAPEC-43
CAPEC-88
CAPEC-108
Affected products
Atp100_firmwareAtp100w_firmwareAtp200_firmwareAtp500_firmwareAtp700_firmwareAtp800_firmwareUsg_flex_100_firmwareUsg_flex_100w_firmwareUsg_flex_200_firmwareUsg_flex_500_firmwareUsg_flex_50_firmwareUsg_flex_50w_firmwareUsg_flex_700_firmwareVpn1000_firmwareVpn100_firmwareVpn300_firmwareVpn50_firmwareZywall_usg_100_firmwareZywall_usg_310_firmware
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Timeline
2023-01-01
Published
2023-05-31
Added to KEV
2023-05-31
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
0.943 · p99
Known exploited (KEV)
Yes
Known exploits — Сканер-ВС
CVE-2023-28771
cisa · https://www.cisa.gov/known-exploited-vulnerabilities-catalog
Enterprise
Affected software
ProductVendorStatus
atp100_firmware*Exploited
atp100w_firmware*Exploited
atp200_firmware*Exploited
atp500_firmware*Exploited
atp700_firmware*Exploited
atp800_firmware*Exploited
usg_flex_100_firmware*Exploited
usg_flex_100w_firmware*Exploited
usg_flex_200_firmware*Exploited
usg_flex_500_firmware*Exploited
usg_flex_50_firmware*Exploited
usg_flex_50w_firmware*Exploited
usg_flex_700_firmware*Exploited
vpn1000_firmware*Exploited
vpn100_firmware*Exploited
vpn300_firmware*Exploited
vpn50_firmware*Exploited
zywall_usg_100_firmware*Exploited
zywall_usg_310_firmware*Exploited
Source databases
CVE
Related vulnerabilities