CVE-2023-6764

Severity
8.1HIGH
EPSS
2.3%
top 15.16%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 20

Description

A format string vulnerability in a function of the IPSec VPN feature in Zyxel ATP series firmware versions from 4.32 through 5.37 Patch 1, USG FLEX series firmware versions from 4.50 through 5.37 Patch 1, USG FLEX 50(W) series firmware versions from 4.16 through 5.37 Patch 1, and USG20(W)-VPN series firmware versions from 4.16 through 5.37 Patch 1 could allow an attacker to achieve unauthorized remote code execution by sending a sequence of specially crafted payloads containing an invalid pointe

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.2 | Impact: 5.9

Affected Packages25 packages

CVEListV5zyxel/usg_flex_series_firmwareversion 4.50 through 5.37 Patch 1
CVEListV5zyxel/usg_flex_50(w)_series_firmwareversion 4.16 through 5.37 Patch 1
CVEListV5zyxel/usg20(w)-vpn_series_firmwareversion 4.16 through 5.37 Patch 1
CVEListV5zyxel/atp_series_firmwareversion 4.32 through 5.37 Patch 1
NVDzyxel/usg_flex_50_firmware4.165.37+1

🔴Vulnerability Details

2
CVEList
CVE-2023-6764: A format string vulnerability in a function of the IPSec VPN feature in Zyxel ATP series firmware versions from 42024-02-20
GHSA
GHSA-83ff-cpf7-ghwf: A format string vulnerability in a function of the IPSec VPN feature in Zyxel ATP series firmware versions from 42024-02-20