« Volver al listado

CVE-2024-7203

Estado: AnalizadaAlta (7.2)—

A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4.60 through V5.38 and USG FLEX series firmware versions from V4.60 through V5.38 could allow an authenticated attacker with administrator privileges to execute some operating system (OS) commands on an affected device by executing a crafted CLI command.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

Tecnologías afectadas (1)

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2024-7203",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2024-7203",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "no"
            },
            {
              "technicalImpact": "total"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2024-09-03T13:47:08.654398Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "security@zyxel.com.tw",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 7.2,
          "attackVector": "NETWORK",
          "baseSeverity": "HIGH",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "HIGH",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 1.2
      }
    ]
  },
  "affected": [
    {
      "source": "security@zyxel.com.tw",
      "affectedData": [
        {
          "vendor": "Zyxel",
          "product": "ATP series firmware",
          "versions": [
            {
              "status": "affected",
              "version": "versions V4.60 through V5.38"
            }
          ],
          "defaultStatus": "unaffected"
        },
        {
          "vendor": "Zyxel",
          "product": "USG FLEX series firmware",
          "versions": [
            {
              "status": "affected",
              "version": "versions V4.60 through V5.38"
            }
          ],
          "defaultStatus": "unaffected"
        }
      ]
    },
    {
      "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
      "affectedData": [
        {
          "cpes": [
            "cpe:2.3:o:zyxel:atp100_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:atp100w_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:atp200_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:atp500_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:atp700_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:atp800_firmware:*:*:*:*:*:*:*:*"
          ],
          "vendor": "zyxel",
          "product": "atp800_firmware",
          "versions": [
            {
              "status": "affected",
              "version": "4.60",
              "versionType": "custom",
              "lessThanOrEqual": "5.38"
            }
          ],
          "defaultStatus": "unaffected"
        },
        {
          "cpes": [
            "cpe:2.3:o:zyxel:usg_flex_100ax_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:usg_flex_100_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:usg_flex_100h_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:usg_flex_100w_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:usg_flex_200_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:usg_flex_200h_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:usg_flex_500_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:usg_flex_500h_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:usg_flex_50ax_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:usg_flex_50_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:usg_flex_700_firmware:*:*:*:*:*:*:*:*",
            "cpe:2.3:o:zyxel:usg_flex_700h_firmware:*:*:*:*:*:*:*:*"
          ],
          "vendor": "zyxel",
          "product": "usg_flex_700h_firmware",
          "versions": [
            {
              "status": "affected",
              "version": "4.60",
              "versionType": "custom",
              "lessThanOrEqual": "5.38"
            }
          ],
          "defaultStatus": "unaffected"
        }
      ]
    }
  ],
  "published": "2024-09-03T02:15:05.520",
  "references": [
    {
      "url": "https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-multiple-vulnerabilities-in-firewalls-09-03-2024",
      "tags": [
        "Vendor Advisory"
      ],
      "source": "security@zyxel.com.tw"
    }
  ],
  "vulnStatus": "Analyzed",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "security@zyxel.com.tw",
      "description": [
        {
          "lang": "en",
          "value": "CWE-78"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4.60 through V5.38 and USG FLEX series firmware versions from V4.60 through V5.38 could allow an authenticated attacker with administrator privileges to execute some operating system (OS) commands on an affected device by executing a crafted CLI command."
    },
    {
      "lang": "es",
      "value": "Una vulnerabilidad de inyección de comandos posterior a la autenticación en las versiones de firmware de la serie Zyxel ATP de V4.60 a V5.38 y en las versiones de firmware de la serie USG FLEX de V4.60 a V5.38 podría permitir que un atacante autenticado con privilegios de administrador ejecute algunos comandos del sistema operativo (OS) en un dispositivo afectado mediante la ejecución de un comando CLI manipulado específicamente."
    }
  ],
  "lastModified": "2026-06-17T08:19:34.923",
  "configurations": [
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:zyxel:zld:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "DD9D1DBC-2A80-48A7-BC9E-77205BC03446",
              "versionEndExcluding": "5.39",
              "versionStartIncluding": "4.60"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:zyxel:atp100:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "7F7654A1-3806-41C7-82D4-46B0CD7EE53B"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:atp100w:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "47398FD0-6C5E-4625-9EFD-DE08C9AB7DB2"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:atp200:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "D68A36FF-8CAF-401C-9F18-94F3A2405CF4"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:atp500:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "2818E8AC-FFEE-4DF9-BF3F-C75166C0E851"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:atp700:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "0B41F437-855B-4490-8011-DF59887BE6D5"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:atp800:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "66B99746-0589-46E6-9CBD-F38619AD97DC"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    },
    {
      "nodes": [
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:o:zyxel:zld:*:*:*:*:*:*:*:*",
              "vulnerable": true,
              "matchCriteriaId": "DD9D1DBC-2A80-48A7-BC9E-77205BC03446",
              "versionEndExcluding": "5.39",
              "versionStartIncluding": "4.60"
            }
          ],
          "operator": "OR"
        },
        {
          "negate": false,
          "cpeMatch": [
            {
              "criteria": "cpe:2.3:h:zyxel:usg_flex_100:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "2B30A4C0-9928-46AD-9210-C25656FB43FB"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:usg_flex_100ax:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "03036815-04AE-4E39-8310-DA19A32CFA48"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:usg_flex_100w:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "D74ABA7E-AA78-4A13-A64E-C44021591B42"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:usg_flex_200:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "F93B6A06-2951-46D2-A7E1-103D7318D612"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:usg_flex_50:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "646C1F07-B553-47B0-953B-DC7DE7FD0F8B"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:usg_flex_500:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "92C697A5-D1D3-4FF0-9C43-D27B18181958"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:usg_flex_50w:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "110A1CA4-0170-4834-8281-0A3E14FC5584"
            },
            {
              "criteria": "cpe:2.3:h:zyxel:usg_flex_700:-:*:*:*:*:*:*:*",
              "vulnerable": false,
              "matchCriteriaId": "9D1396E3-731B-4D05-A3F8-F3ABB80D5C29"
            }
          ],
          "operator": "OR"
        }
      ],
      "operator": "AND"
    }
  ],
  "sourceIdentifier": "security@zyxel.com.tw"
}