Lucene search

K
prionPRIOn knowledge basePRION:CVE-2023-5650
HistoryNov 28, 2023 - 2:15 a.m.

Privilege escalation

2023-11-2802:15:00
PRIOn knowledge base
www.prio-n.com
2
privilege escalation
zysh
zyxel
atp
usg flex
usg20(w)-vpn
firmware
vulnerability
web gui
url modification

6.9 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

An improper privilege management vulnerability in the ZySH of the Zyxel ATP series firmware versions 4.32 through 5.37, USG FLEX series firmware versions 4.50 through 5.37, USG FLEX 50(W) series firmware versions 4.16 through 5.37, USG20(W)-VPN series firmware versions 4.16 through 5.37, and VPN series firmware versions 4.30 through 5.37, could allow an authenticated local attacker to modify the URL of the registration page in the web GUI of an affected device.

CPENameOperatorVersion
zldge4.32
zldle5.37
zldge4.50
zldle5.37
zldge4.16
zldle5.37
zldge4.30
zldle5.37

6.9 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

5.1%

Related for PRION:CVE-2023-5650