¡¾Îó²îͨ¸æ¡¿Zyxel NAS×°±¸ÏÂÁî×¢ÈëÎó²î£¨CVE-2023-27992£©
Ðû²¼Ê±¼ä 2023-06-21Ò»¡¢Îó²î¸ÅÊö
CVE ID | CVE-2023-27992 | ·¢Ã÷ʱ¼ä | 2023-06-21 |
Àà ÐÍ | ÏÂÁî×¢Èë | µÈ ¼¶ | ÑÏÖØ |
¹¥»÷ÏòÁ¿ | ÍøÂç | ËùÐèȨÏÞ | ÎÞ |
¹¥»÷ÖØÆ¯ºó | µÍ | Óû§½»»¥ | ÎÞ |
PoC/EXP | δ¹ûÕæ | ÔÚҰʹÓà | δ·¢Ã÷ |
ºÏÇڿƼ¼£¨ZyXEL£©Êǹú¼Ê×ÅÃûµÄÍøÂç¿í´øÏµÍ³¼°½â¾ö¼Æ»®¹©Ó¦ÉÌ¡£¡£¡£¡£¡£
6ÔÂ21ÈÕ£¬£¬£¬£¬£¬c7c7ÓéÀÖÆ½Ì¨VSRC¼à²âµ½Zyxel Ðû²¼Ç徲ͨ¸æ£¬£¬£¬£¬£¬ÐÞ¸´ÁËÆä¶à¿îNAS£¨ÍøÂ總¼Ó´æ´¢£©×°±¸ÖеÄÏÂÁî×¢ÈëÎó²î£¨CVE-2023-27992£©£¬£¬£¬£¬£¬¸ÃÎó²îµÄCVSSv3ÆÀ·ÖΪ9.8£¬£¬£¬£¬£¬¿ÉÄܵ¼ÖÂÔÚδ¾Éí·ÝÑéÖ¤µÄÇéÐÎÏÂͨ¹ý·¢ËÍÌØÖÆHTTPÇëÇóÔ¶³ÌÖ´ÐÐijЩϵͳÏÂÁ£¬£¬£¬£¬´Ó¶øÔì³É×°±¸±»ÆÆËð»ò±»¿ØÖÆ¡£¡£¡£¡£¡£
¶þ¡¢Ó°Ïì¹æÄ£
NAS326Ðͺţº°æ±¾<= V5.21(AAZF.13)C0
NAS540Ðͺţº°æ±¾<= V5.21(AATB.10)C0
NAS542Ðͺţº°æ±¾<= V5.21(ABAG.10)C0
Èý¡¢Çå¾²²½·¥
3.1 Éý¼¶°æ±¾
ÏÖÔÚ¸ÃÎó²îÒѾÐÞ¸´£¬£¬£¬£¬£¬ÊÜÓ°ÏìÓû§¿É²Î¿¼Ï±íÉý¼¶µ½ÏìÓ¦ÐÞ¸´°æ±¾£º
ÊÜÓ°ÏìÐͺŠ| Ó°Ïì¹æÄ£ | ²¹¶¡°æ±¾ |
NAS326 | V5.21(AAZF.13)C0 ¼°Ö®Ç°°æ±¾ | V5.21(AAZF.14)C0 |
NAS540 | V5.21(AATB.10)C0 ¼°Ö®Ç°°æ±¾ | V5.21(AATB.11)C0 |
NAS542 | V5.21(ABAG.10)C0 ¼°Ö®Ç°°æ±¾ | V5.21(ABAG.11)C0 |
ÏÂÔØÁ´½Ó£º
https://www.zyxel.com/global/en/support/download?model=nas326
3.2 ÔÝʱ²½·¥
¿ÉÒÔͨ¹ý×èÖ¹½«NAS×°±¸Ì»Â¶ÔÚ»¥ÁªÍøÉÏ£¬£¬£¬£¬£¬Ö»ÄÜ´ÓÍâµØÍøÂç»òͨ¹ýVPN»á¼û£¬£¬£¬£¬£¬»ò½«NAS×°±¸ÖÃÓÚ·À»ðǽװ±¸Ö®ØÊºó»º½â¸ÃÎó²î¡£¡£¡£¡£¡£
3.3 ͨÓý¨Òé
l °´ÆÚ¸üÐÂϵͳ²¹¶¡£¡£¡£¡£¡£¬£¬£¬£¬£¬ïÔÌϵͳÎó²î£¬£¬£¬£¬£¬ÌáÉýЧÀÍÆ÷µÄÇå¾²ÐÔ¡£¡£¡£¡£¡£
l ÔöǿϵͳºÍÍøÂçµÄ»á¼û¿ØÖÆ£¬£¬£¬£¬£¬Ð޸ķÀ»ðǽսÂÔ£¬£¬£¬£¬£¬¹Ø±Õ·ÇÐëÒªµÄÓ¦Óö˿ڻòЧÀÍ£¬£¬£¬£¬£¬ïÔ̽«Î£ÏÕЧÀÍ£¨ÈçSSH¡¢RDPµÈ£©Ì»Â¶µ½¹«Íø£¬£¬£¬£¬£¬ïÔ̹¥»÷Ãæ¡£¡£¡£¡£¡£
l ʹÓÃÆóÒµ¼¶Çå¾²²úÆ·£¬£¬£¬£¬£¬ÌáÉýÆóÒµµÄÍøÂçÇå¾²ÐÔÄÜ¡£¡£¡£¡£¡£
l ÔöǿϵͳÓû§ºÍȨÏÞÖÎÀí£¬£¬£¬£¬£¬ÆôÓöàÒòËØÈÏÖ¤»úÖÆºÍ×îСȨÏÞÔÔò£¬£¬£¬£¬£¬Óû§ºÍÈí¼þȨÏÞÓ¦¼á³ÖÔÚ×îµÍÏÞ¶È¡£¡£¡£¡£¡£
l ÆôÓÃÇ¿ÃÜÂëÕ½ÂÔ²¢ÉèÖÃΪ°´ÆÚÐ޸ġ£¡£¡£¡£¡£
3.4 ²Î¿¼Á´½Ó
https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-pre-authentication-command-injection-vulnerability-in-nas-products
https://www.bleepingcomputer.com/news/security/zyxel-warns-of-critical-command-injection-flaw-in-nas-devices/
ËÄ¡¢°æ±¾ÐÅÏ¢
°æ±¾ | ÈÕÆÚ | ±¸×¢ |
V1.0 | 2023-06-21 | Ê×´ÎÐû²¼ |
Îå¡¢¸½Â¼
5.1 c7c7ÓéÀÖÆ½Ì¨¼ò½é
c7c7ÓéÀÖÆ½Ì¨½¨ÉèÓÚ1996Ä꣬£¬£¬£¬£¬ÊÇÓÉÁôÃÀ²©Ê¿ÑÏÍû¼ÑŮʿ½¨ÉèµÄ¡¢ÓµÓÐÍêÈ«×ÔÖ÷֪ʶ²úȨµÄÐÅÏ¢Çå¾²¸ß¿Æ¼¼ÆóÒµ¡£¡£¡£¡£¡£ÊǺ£ÄÚ×î¾ßʵÁ¦µÄÐÅÏ¢Çå¾²²úÆ·¡¢Ç徲ЧÀͽâ¾ö¼Æ»®µÄÁ캽ÆóÒµÖ®Ò»¡£¡£¡£¡£¡£
¹«Ë¾×ܲ¿Î»ÓÚ±±¾©ÊÐÖйشåÈí¼þÔ°c7c7ÓéÀÖÆ½Ì¨´óÏ㬣¬£¬£¬£¬¹«Ë¾Ô±¹¤6000ÓàÈË£¬£¬£¬£¬£¬Ñз¢ÍŶÓ1200ÓàÈË, ÊÖÒÕЧÀÍÍŶÓ1300ÓàÈË¡£¡£¡£¡£¡£ÔÚÌìϸ÷Ê¡¡¢ÊС¢×ÔÖÎÇøÉèÁ¢·ÖÖ§»ú¹¹ÁùÊ®¶à¸ö£¬£¬£¬£¬£¬ÓµÓÐÁýÕÖÌìϵÄÏúÊÛϵͳ¡¢ÇþµÀϵͳºÍÊÖÒÕÖ§³Öϵͳ¡£¡£¡£¡£¡£¹«Ë¾ÓÚ2010Äê6ÔÂ23ÈÕÔÚÉîÛÚÖÐС°å¹ÒÅÆÉÏÊС£¡£¡£¡£¡££¨¹ÉƱ´úÂ룺002439£©
¶àÄêÀ´£¬£¬£¬£¬£¬c7c7ÓéÀÖÆ½Ì¨ÖÂÁ¦ÓÚÌṩ¾ßÓйú¼Ê¾ºÕùÁ¦µÄ×ÔÖ÷Á¢ÒìµÄÇå¾²²úÆ·ºÍ×î¼Ñʵ¼ùЧÀÍ£¬£¬£¬£¬£¬×ÊÖú¿Í»§ÖÜÈ«ÌáÉýÆäIT»ù´¡ÉèÊ©µÄÇå¾²ÐÔºÍÉú²úЧÄÜ£¬£¬£¬£¬£¬Îª´òÔìºÍÌáÉý¹ú¼Ê»¯µÄÃñ×åÐÅÏ¢Çå¾²¹¤ÒµÁì¾üÆ·ÅÆ¶ø²»Ð¸Æð¾¢¡£¡£¡£¡£¡£
5.2 ¹ØÓÚc7c7ÓéÀÖÆ½Ì¨
c7c7ÓéÀÖÆ½Ì¨Çå¾²Ó¦¼±ÏìÓ¦ÖÐÐÄÒÑÐû²¼1000¶à¸öÎó²îͨ¸æºÍΣº¦Ô¤¾¯£¬£¬£¬£¬£¬ÎÒÃǽ«Ò»Á¬¸ú×ÙÈ«Çò×îеÄÍøÂçÇå¾²ÊÂÎñºÍÎó²î£¬£¬£¬£¬£¬ÎªÆóÒµµÄÐÅÏ¢Çå¾²±£¼Ý»¤º½¡£¡£¡£¡£¡£
¹Ø×¢ÎÒÃÇ£º



¾©¹«Íø°²±¸11010802024551ºÅ