← back
CVE-2023-28770highobserved exploitationCWE-200CWE-203

CVE-2023-28770

70Vexday Risk Score

Patch now. It exploitation observed by VulnCheck and has a working public exploit.

ssvc Actcvss 7.5epss 58%
from disclosure to weapon0 days
Published on NVDApr 27
metasploitFeb 1
VulnCheck+215d
exploitation probability
58%top 1% of all CVEs
observed exploitation
yesVulnCheck
In short

A flaw in Zyxel DX5401-B0 routers allows attackers to access system files and retrieve the supervisor password without logging in. This happens through two vulnerable components that expose sensitive encrypted information.

Technical detail

The CGI export_log and zcmd binary in affected Zyxel DX5401-B0 firmware versions (pre-V5.17) fail to properly restrict access to sensitive files, enabling unauthenticated remote attackers to extract system configuration data and decrypt supervisor credentials through information disclosure vectors.

Summary generated and translated by AI from the official description.
The sensitive information exposure vulnerability in the CGI “Export_Log” and the binary “zcmd” in Zyxel DX5401-B0 firmware versions prior to V5.17(ABYO.1)C0 could allow a remote unauthenticated attacker to read the system files and to retrieve the password of the supervisor from the encrypted file.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N