CVE-2023-5960
 
Severity Score
5.5
*CVSS v3.1
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
0
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
An improper privilege management vulnerability in the hotspot feature of the Zyxel USG FLEX series firmware versions 4.50 through 5.37 and VPN series firmware versions 4.30 through 5.37 could allow an authenticated local attacker to access the system files on an affected device.
Una vulnerabilidad de administración de privilegios inadecuada en la función de punto de acceso de las versiones de firmware de la serie Zyxel USG FLEX 4.50 a 5.37 y las versiones de firmware de la serie VPN 4.30 a 5.37 podría permitir que un atacante local autenticado acceda a los archivos del sistema en un dispositivo afectado.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2023-11-06 CVE Reserved
- 2023-11-28 CVE Published
- 2023-11-28 EPSS Updated
- 2024-08-02 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-269: Improper Privilege Management
CAPEC
References (1)
URL | Tag | Source |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Zyxel Search vendor "Zyxel" | Zld Search vendor "Zyxel" for product "Zld" | >= 4.50 <= 5.37 Search vendor "Zyxel" for product "Zld" and version " >= 4.50 <= 5.37" | - |
Affected
| in | Zyxel Search vendor "Zyxel" | Usg Flex 100 Search vendor "Zyxel" for product "Usg Flex 100" | - | - |
Safe
|
Zyxel Search vendor "Zyxel" | Zld Search vendor "Zyxel" for product "Zld" | >= 4.50 <= 5.37 Search vendor "Zyxel" for product "Zld" and version " >= 4.50 <= 5.37" | - |
Affected
| in | Zyxel Search vendor "Zyxel" | Usg Flex 100w Search vendor "Zyxel" for product "Usg Flex 100w" | - | - |
Safe
|
Zyxel Search vendor "Zyxel" | Zld Search vendor "Zyxel" for product "Zld" | >= 4.50 <= 5.37 Search vendor "Zyxel" for product "Zld" and version " >= 4.50 <= 5.37" | - |
Affected
| in | Zyxel Search vendor "Zyxel" | Usg Flex 200 Search vendor "Zyxel" for product "Usg Flex 200" | - | - |
Safe
|
Zyxel Search vendor "Zyxel" | Zld Search vendor "Zyxel" for product "Zld" | >= 4.50 <= 5.37 Search vendor "Zyxel" for product "Zld" and version " >= 4.50 <= 5.37" | - |
Affected
| in | Zyxel Search vendor "Zyxel" | Usg Flex 50 Search vendor "Zyxel" for product "Usg Flex 50" | - | - |
Safe
|
Zyxel Search vendor "Zyxel" | Zld Search vendor "Zyxel" for product "Zld" | >= 4.50 <= 5.37 Search vendor "Zyxel" for product "Zld" and version " >= 4.50 <= 5.37" | - |
Affected
| in | Zyxel Search vendor "Zyxel" | Usg Flex 500 Search vendor "Zyxel" for product "Usg Flex 500" | - | - |
Safe
|
Zyxel Search vendor "Zyxel" | Zld Search vendor "Zyxel" for product "Zld" | >= 4.50 <= 5.37 Search vendor "Zyxel" for product "Zld" and version " >= 4.50 <= 5.37" | - |
Affected
| in | Zyxel Search vendor "Zyxel" | Usg Flex 50w Search vendor "Zyxel" for product "Usg Flex 50w" | - | - |
Safe
|
Zyxel Search vendor "Zyxel" | Zld Search vendor "Zyxel" for product "Zld" | >= 4.50 <= 5.37 Search vendor "Zyxel" for product "Zld" and version " >= 4.50 <= 5.37" | - |
Affected
| in | Zyxel Search vendor "Zyxel" | Usg Flex 700 Search vendor "Zyxel" for product "Usg Flex 700" | - | - |
Safe
|
Zyxel Search vendor "Zyxel" | Zld Search vendor "Zyxel" for product "Zld" | >= 4.30 <= 5.37 Search vendor "Zyxel" for product "Zld" and version " >= 4.30 <= 5.37" | - |
Affected
| in | Zyxel Search vendor "Zyxel" | Vpn100 Search vendor "Zyxel" for product "Vpn100" | - | - |
Safe
|
Zyxel Search vendor "Zyxel" | Zld Search vendor "Zyxel" for product "Zld" | >= 4.30 <= 5.37 Search vendor "Zyxel" for product "Zld" and version " >= 4.30 <= 5.37" | - |
Affected
| in | Zyxel Search vendor "Zyxel" | Vpn1000 Search vendor "Zyxel" for product "Vpn1000" | - | - |
Safe
|
Zyxel Search vendor "Zyxel" | Zld Search vendor "Zyxel" for product "Zld" | >= 4.30 <= 5.37 Search vendor "Zyxel" for product "Zld" and version " >= 4.30 <= 5.37" | - |
Affected
| in | Zyxel Search vendor "Zyxel" | Vpn300 Search vendor "Zyxel" for product "Vpn300" | - | - |
Safe
|
Zyxel Search vendor "Zyxel" | Zld Search vendor "Zyxel" for product "Zld" | >= 4.30 <= 5.37 Search vendor "Zyxel" for product "Zld" and version " >= 4.30 <= 5.37" | - |
Affected
| in | Zyxel Search vendor "Zyxel" | Vpn50 Search vendor "Zyxel" for product "Vpn50" | - | - |
Safe
|