#VU48620 Command Injection in ZyXEL ZLD and ZeXEL SD-OS - CVE-2020-29299
Published: November 24, 2020 / Updated: December 29, 2020
ZyXEL ZLD
ZeXEL SD-OS
ZyXEL Communications Corp.
Description
The vulnerability allows a remote user to execute arbitrary commands on the system.
The vulnerability exists due to insufficient validation of user supplied input n the “chg_exp_pwd” CGI program on some Zyxel security firewalls. A remote authenticated user can inject and execute arbitrary OS commands with elevated privileges.
Remediation
Install updates from vendor's website.
| Affected series | Patch available in |
|---|---|
| VPN series |
|
| USG series | ZLD V4.39 week38* and above |
| USG FLEX series | ZLD V4.55 week38* and above |
| ATP series | ZLD V4.55 week38* and above |
| NSG series | V1.33 patch 4** and above |