A post-authentication command injection vulnerability in the “DomainName” parameter of the DHCP configuration file in Zyxel DX3301-T0 and EX3301-T0 firmware versions through 5.50(ABVY.7.1)C0 could allow an authenticated attacker with administrator privileges to execute OS commands on an affected device.
A post-authentication command injection vulnerability in the “DomainName” parameter of the DHCP configuration file in Zyxel DX3301-T0 and EX3301-T0 firmware versions through 5.50(ABVY.7.1)C0 could allow an authenticated attacker with administrator privileges to execute OS commands on an affected device.
영향 제품·버전
제품 Zyxel DX3301-T0 firmware, EX3301-T0 firmware, nebula fwa70 firmware
공식 보안 권고 원문에서 현재 제품·에디션·설치 방식이 1.51\(acrf.0\)v0, 1.60\(acko.3\)v0, 1.60\(acgd.1\)v0, 1.60\(acpz.1\)v0, 1.60\(acgc.2\)v0, 1.18\(acca.7\)v0, 1.15\(acev.4\)v0, 1.16\(accg.1\)v0, 1.16\(accc.2\)v0, 5.50\(abvy.7.2\)c0, 5.17\(abyo.7.2\)c0, 5.63\(acmu.3.1\)c0, 5.63\(acld.3.1\)c0, 5.19\(acjq.4.2\)c0, 5.50\(abpm.9.8\)c0, 5.50\(acdi.2.5\)c0, 5.44\(achr.6\)c0, 5.70\(acif.3\)c0, 5.70\(aceg.5.5\)c0, 5.70\(acdz.6\)c0 기준의 대상인지 확인한 뒤 공급사 절차로 적용합니다.
조치 후 확인사항
패치 후 같은 명령으로 전체 버전을 다시 확인해 Zyxel DX3301-T0 firmware, EX3301-T0 firmware, nebula fwa70 firmware 1.51\(acrf.0\)v0, 1.60\(acko.3\)v0, 1.60\(acgd.1\)v0, 1.60\(acpz.1\)v0, 1.60\(acgc.2\)v0, 1.18\(acca.7\)v0, 1.15\(acev.4\)v0, 1.16\(accg.1\)v0, 1.16\(accc.2\)v0, 5.50\(abvy.7.2\)c0, 5.17\(abyo.7.2\)c0, 5.63\(acmu.3.1\)c0, 5.63\(acld.3.1\)c0, 5.19\(acjq.4.2\)c0, 5.50\(abpm.9.8\)c0, 5.50\(acdi.2.5\)c0, 5.44\(achr.6\)c0, 5.70\(acif.3\)c0, 5.70\(aceg.5.5\)c0, 5.70\(acdz.6\)c0 기준을 충족하는지 확인합니다. 이어서 명령어·코드 인젝션 관련 오류·공격 흔적이 새로 발생하지 않는지 확인합니다.