Firmware version 4.60 of Zyxel USG devices contains an undocumented account (zyfwp) with an unchangeable password
Published Dec 22, 2020 ·Due May 3, 2022
9.8
CRITICALCVSS 3.1
EPSS 90.16%
Description
Firmware version 4.60 of Zyxel USG devices contains an undocumented account (zyfwp) with an unchangeable password. The password for this account can be found in cleartext in the firmware. This account can be used by someone to login to the ssh server or web interface with admin privileges.
Affected products
No data.
Configuration 1
- 4.60
Configuration 2
- 4.60
Running on/with
- n/a
Configuration 3
- 4.60
Configuration 4
- 4.60
Configuration 5
- 4.60
Configuration 6
- 4.60
Configuration 7
- 4.60
Configuration 8
- 4.60
Configuration 9
- 4.60
Configuration 10
- 4.60
Configuration 11
- 4.60
Configuration 12
- 4.60
Configuration 13
- 4.60
Configuration 14
- 4.60
Configuration 15
- 4.60
Running on/with
- n/a
Configuration 16
- 4.60
Configuration 17
- 4.60
Configuration 18
- 4.60
Configuration 19
- 4.60
Configuration 20
- 4.60
Configuration 21
- 4.60
Configuration 22
- 4.60
Configuration 23
- 4.60
Configuration 24
- 4.60
Configuration 25
- 4.60
Configuration 26
- 4.60
Running on/with
- n/a
Configuration 27
- 4.60
Running on/with
- n/a
Configuration 28
- 4.60
Running on/with
- n/a
Configuration 29
- 4.60
Running on/with
- n/a
Configuration 30
- 4.60
Running on/with
- n/a
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (9)
- http://ftp.zyxel.com/USG40/firmware/USG40_4.60%28AALA.1%29C0_2.pdf Broken Link
- https://businessforum.zyxel.com/discussion/5252/zld-v4-60-revoke-and-wk48-firmware-release Release Notes
- https://businessforum.zyxel.com/discussion/5254/whats-new-for-zld4-60-patch-1-available-on-dec-15 Release Notes
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-21944 Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-29583 government-resourceUS Government Resource
- https://www.eyecontrol.nl/blog/undocumented-user-account-in-zyxel-products.html Broken LinkThird Party Advisory
- https://www.secpod.com/blog/a-secret-zyxel-firewall-and-ap-controllers-could-allow-for-administrative-access-cve-2020-29583/ ExploitThird Party Advisory
- https://www.zyxel.com/support/CVE-2020-29583.shtml Vendor Advisory
- https://www.zyxel.com/support/security_advisories.shtml Vendor Advisory
| Link | Providers | Tags |
|---|---|---|
| http://ftp.zyxel.com/USG40/firmware/USG40_4.60%28AALA.1%29C0_2.pdf | Broken Link | |
| https://businessforum.zyxel.com/discussion/5252/zld-v4-60-revoke-and-wk48-firmware-release | Release Notes | |
| https://businessforum.zyxel.com/discussion/5254/whats-new-for-zld4-60-patch-1-available-on-dec-15 | Release Notes | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-21944 | Advisory | |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-29583 | government-resourceUS Government Resource | |
| https://www.eyecontrol.nl/blog/undocumented-user-account-in-zyxel-products.html | Broken LinkThird Party Advisory | |
| https://www.secpod.com/blog/a-secret-zyxel-firewall-and-ap-controllers-could-allow-for-administrative-access-cve-2020-29583/ | ExploitThird Party Advisory | |
| https://www.zyxel.com/support/CVE-2020-29583.shtml | Vendor Advisory | |
| https://www.zyxel.com/support/security_advisories.shtml | Vendor Advisory |
Change history (0)
No recorded changes yet.