IKE: Zyxel ZyWALL/USG series firmware OS Command Injection

This signature detects attempts to exploit a known vulnerability against Zyxel ZyWALL/USG series. A successful attack can lead to arbitrary code execution.

Extended Description

Improper error message handling in Zyxel ZyWALL/USG series firmware versions 4.60 through 4.73, VPN series firmware versions 4.60 through 5.35, USG FLEX series firmware versions 4.60 through 5.35, and ATP series firmware versions 4.60 through 5.35, which could allow an unauthenticated attacker to execute some OS commands remotely by sending crafted packets to an affected device.

Short Name
IKE:ZYXEL-CMD-INJ
Severity
Major
Recommended
False
Recommended Action
Drop
Category
IKE
Keywords
CVE-2023-28771 Command Injection OS ZyWALL/USG Zyxel firmware series
Release Date
06/16/2023
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3608
False Positive
Unknown

Found a potential security threat?