9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD
Description
Firmware version 4.60 of Zyxel USG devices contains an undocumented account (zyfwp) with an unchangeable password. The password for this account can be found in cleartext in the firmware. This account can be used by someone to login to the ssh server or web interface with admin privileges.
Affected (30)
Products: Zyxel: Usg20 Vpn Firmware, Usg20w Vpn Firmware, Usg40 Firmware, Usg40w Firmware, Usg60 Firmware, Usg60w Firmware, Usg110 Firmware, Usg210 Firmware, Usg310 Firmware, Usg1100 Firmware, Usg1900 Firmware, Usg2200 Firmware, Zywall110 Firmware, Zywall310 Firmware, Zywall1100 Firmware, Atp100 Firmware, Atp100w Firmware, Atp200 Firmware, Atp500 Firmware, Atp700 Firmware, Atp800 Firmware, Vpn50 Firmware, Vpn100 Firmware, Vpn300 Firmware, Vpn1000 Firmware, Usg Flex 100 Firmware, Usg Flex 100w Firmware, Usg Flex 200 Firmware, Usg Flex 500 Firmware, Usg Flex 700 Firmware
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg20 Vpn | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg20w Vpn | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg40 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg40w | All versions |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg60 | All versions |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg60w | All versions |
Configuration G
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg110 | All versions |
Configuration H
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg210 | All versions |
Configuration I
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg310 | All versions |
Configuration J
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg1100 | All versions |
Configuration K
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg1900 | All versions |
Configuration L
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg2200 | All versions |
Configuration M
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Zywall110 | All versions |
Configuration N
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Zywall310 | All versions |
Configuration O
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Zywall1100 | All versions |
Configuration P
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Atp100 | All versions |
Configuration Q
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Atp100w | All versions |
Configuration R
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Atp200 | All versions |
Configuration S
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Atp500 | All versions |
Configuration T
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Atp700 | All versions |
Configuration U
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Atp800 | All versions |
Configuration V
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Vpn50 | All versions |
Configuration W
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Vpn100 | All versions |
Configuration X
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Vpn300 | All versions |
Configuration Y
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Vpn1000 | All versions |
Configuration Z
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg Flex 100 | All versions |
Configuration A
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg Flex 100w | All versions |
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg Flex 200 | All versions |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg Flex 500 | All versions |
Configuration D
| Vulnerable Software | Affected Versions |
|---|---|
| Version 4.60 |
| Running on/with | Platform Versions |
|---|---|
Zyxel Usg Flex 700 | All versions |
References (15)
Source: cve@mitre.org
Release Notes
Source: cve@mitre.org
Release Notes
Source: cve@mitre.org
Broken LinkThird Party Advisory
Source: cve@mitre.org
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken Link
Source: af854a3a-2127-422b-91ae-364da2661108
Release Notes
Source: af854a3a-2127-422b-91ae-364da2661108
Release Notes
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: 134c704f-9b21-4f2e-91b3-4a467353bcc0
US Government Resource
Timeline
No history available yet.