← Back to browse · API

CVE-2023-28770

Severity
HIGH
CVSS
7.5
EPSS
0.57778
Risk score
50.22
CISA KEV
No
PoC
No
Published
2023-04-27
Modified
2025-01-31
First seen
2026-08-07
Aliases
EUVD-2023-32405, GHSA-JWCX-M84W-H98G
Products
Zyxel:DX5401-B0 firmware < V5.17(ABYO.1)C0
Sources
euvd EUVD-2023-32405

Description

The sensitive information exposure vulnerability in the CGI “Export_Log” and the binary “zcmd” in Zyxel DX5401-B0 firmware versions prior to V5.17(ABYO.1)C0 could allow a remote unauthenticated attacker to read the system files and to retrieve the password of the supervisor from the encrypted file.

References