Firewall

Zyxel Firewall Vulnerability lets Attackers Inject OS Commands

Recently, Zyxel, the networking equipment manufacturer, has issued critical security patches for its firewall devices to fix a vulnerability allowing RCE on the affected systems.

This RCE vulnerability, tracked as “CVE-2023-28771,” was discovered by TRAPA Security, and on the CVSS scoring system, it has been rated 9.8 with a “Critical” severity tag.

Products Affected

Here below, we have mentioned the products that are impacted by this flaw:-

  • ATP (Affected versions: ZLD V4.60 to V5.35, Patched version: ZLD V5.36)
  • USG FLEX (Affected versions: ZLD V4.60 to V5.35, Patched version: ZLD V5.36)
  • VPN (Affected versions: ZLD V4.60 to V5.35, Patched version: ZLD V5.36)
  • ZyWALL/USG (Affected versions: ZLD V4.60 to V4.73, Patched version: ZLD V4.73 Patch 1)

By exploiting this vulnerability, unauthenticated attackers can execute OS commands on an affected device by sending specially crafted packets due to improper error message handling in certain firewall versions.

Moreover, Zyxel has addressed one medium-severity bug and five high-severity vulnerabilities that impact multiple firewalls and access point devices. 

While these vulnerabilities may result in the activation of code execution and DoS situations.

The credit for reporting the issues has been given to Nikita Abramov of Positive Technologies, a cybersecurity company based in Russia.

Additionally, Zyxel urged users to contact their local service rep or visit Zyxel’s Community for further information or assistance.

Struggling to Apply The Security Patch in Your System? – 
Try All-in-One Patch Manager Plus

Tushar Subhra Dutta

Tushar is a senior cybersecurity and breach reporter. He specializes in covering cybersecurity news, trends, and emerging threats, data breaches, and malware attacks. With years of experience, he brings clarity and depth to complex security topics.

Recent Posts

Hackers Target AI Infrastructure With RCE, Prompt Injection and API Key Theft

Hackers are actively probing AI systems, turning exposed gateways and agent tools into routes for…

4 hours ago

Hackers Make Phishing Pages Change Their Code Every Time Someone Opens Them

Hackers are making some phishing pages harder to track by changing the code delivered to…

4 hours ago

Iran-Linked Hackers Reportedly Knock UK Power Plant Offline for Four Days

A cyber incident reportedly forced a British power plant to halt operations for about four…

5 hours ago

Russian Hackers Use New HOOKEDGE Malware to Spy on European Defense and Diplomatic Targets

Russian hackers have used a new backdoor called HOOKEDGE to target defense manufacturers, government bodies,…

6 hours ago

Ransomware Gang Claims AI Can Analyze 700GB of Stolen Data Every Hour

TITAN ransomware is pairing file encryption with an ambitious claim: artificial intelligence that can sort…

6 hours ago

Hackers Compromise Hundreds of WordPress Sites to Deploy Amatera Stealer via ClickFix

A fake student resume is being used to place a remote-access tool on researchers’ Windows…

7 hours ago