cve entity

CVE-2023-28771

1 source-linked records in the current knowledge graph.

high

CVE-2023-28771: Zyxel Multiple Firewalls OS Command Injection Vulnerability

Zyxel ATP, USG FLEX, VPN, and ZyWALL/USG firewalls allow for improper error message handling which could allow an unauthenticated attacker to execute OS commands remotely by sending crafted packets to an affected device. Required action: Apply updates per vendor instructions.

CVE-2023-28771EPSS 99.3%Multiple FirewallsZyxel
CISA KEV ↗ · unattributed attribution