Description
This module exploits a remote unauthenticated command injection vulnerability in the Internet Key Exchange (IKE) packet decoder over UDP port 500 on the WAN interface of several Zyxel devices. The affected devices are as follows: ATP (Firmware version 4.60 to 5.35 inclusive), USG FLEX (Firmware version 4.60 to 5.35 inclusive), VPN (Firmware version 4.60 to 5.35 inclusive), and ZyWALL/USG (Firmware version 4.60 to 4.73 inclusive). The affected devices are vulnerable in a default configuration and command execution is with root privileges.
Module options
To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':
msf > use exploit/linux/misc/zyxel/ike_decoder_rce_cve_2023_28771msf undefined(ike_decoder_rce_cve_2023_28771) > show actions ...actions...msf undefined(ike_decoder_rce_cve_2023_28771) > set ACTION < action-name >msf undefined(ike_decoder_rce_cve_2023_28771) > show options ...show and set options...msf undefined(ike_decoder_rce_cve_2023_28771) > runPrioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub