CVE-2023-27990

MEDIUMCVSS 4.8/10EPSS 0.34%

Last modified

CVE-2023-27990 is a medium-severity vulnerability rated 4.8/10 on the CVSS scale. The cross-site scripting (XSS) vulnerability in Zyxel ATP series firmware versions 4.32 through 5.35, USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.16 through 5.35, USG20(W)-VPN firmware versions 4.16 through 5.35, and VPN series firmware versions 4.30 through 5.35, which could allow an authenticated attacker with administrator privileges to store malicious scripts in a vulnerable device. A successful XSS attack could then result in the stored malicious scripts being executed when the user visits the Logs page of the GUI on the device.. EPSS estimates a 0.34% chance of exploitation in the next 30 days.

Description

The cross-site scripting (XSS) vulnerability in Zyxel ATP series firmware versions 4.32 through 5.35, USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.16 through 5.35, USG20(W)-VPN firmware versions 4.16 through 5.35, and VPN series firmware versions 4.30 through 5.35, which could allow an authenticated attacker with administrator privileges to store malicious scripts in a vulnerable device. A successful XSS attack could then result in the stored malicious scripts being executed when the user visits the Logs page of the GUI on the device.

Metrics

CVSS 3.1
4.8/10

CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:C/C:L/I:L/A:N

EPSS Probability
0.34%

26.2th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
ZyxelAtp200 Firmware>= 4.32, < 5.36
ZyxelAtp100 Firmware>= 4.32, < 5.36
ZyxelAtp700 Firmware>= 4.32, < 5.36
ZyxelAtp500 Firmware>= 4.32, < 5.36
ZyxelAtp100w Firmware>= 4.32, < 5.36
ZyxelAtp800 Firmware>= 4.32, < 5.36
ZyxelUsg Flex 100 Firmware>= 4.50, < 5.36
ZyxelUsg Flex 50 Firmware>= 4.50, < 5.36
ZyxelUsg Flex 200 Firmware>= 4.50, < 5.36
ZyxelUsg Flex 500 Firmware>= 4.50, < 5.36
ZyxelUsg Flex 700 Firmware>= 4.50, < 5.36
ZyxelUsg Flex 100w Firmware>= 4.50, < 5.36
ZyxelUsg 20w-Vpn Firmware>= 4.16, < 5.36
ZyxelUsg Flex 50w Firmware>= 4.16, < 5.36
ZyxelUsg20-Vpn Firmware>= 4.30, < 5.36
ZyxelVpn100 Firmware>= 4.30, < 5.36
ZyxelVpn1000 Firmware>= 4.30, < 5.36
ZyxelVpn300 Firmware>= 4.30, < 5.36
ZyxelVpn50 Firmware>= 4.30, < 5.36

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2023-27990?
The cross-site scripting (XSS) vulnerability in Zyxel ATP series firmware versions 4.32 through 5.35, USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.16 through 5.35, USG20(W)-VPN firmware versions 4.16 through 5.35, and VPN series firmware versions 4.30 through 5.35, which could allow an authenticated attacker with administrator privileges to store malicious scripts in a vulnerable device. A successful XSS attack could then result in the stored malicious scripts being executed when the user visits the Logs page of the GUI on the device.
How severe is CVE-2023-27990?
CVE-2023-27990 has a CVSS score of 4.8/10 (MEDIUM severity). The EPSS model estimates a 0.34% probability of exploitation in the next 30 days.
How do I fix CVE-2023-27990?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2023-27990?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST