VYPR
Critical severity9.8CISA KEVNVD Advisory· Published May 24, 2023· Updated Jun 17, 2026

CVE-2023-33009

CVE-2023-33009

Description

A buffer overflow vulnerability in the notification function in Zyxel ATP series firmware versions 4.60 through 5.36 Patch 1, USG FLEX series firmware versions 4.60 through 5.36 Patch 1, USG FLEX 50(W) firmware versions 4.60 through 5.36 Patch 1, USG20(W)-VPN firmware versions 4.60 through 5.36 Patch 1, VPN series firmware versions 4.60 through 5.36 Patch 1, ZyWALL/USG series firmware versions 4.60 through 4.73 Patch 1, could allow an unauthenticated attacker to cause denial-of-service (DoS) conditions and even a remote code execution on an affected device.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

81
  • cpe:2.3:o:zyxel:atp100_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:atp100_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:atp100_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:atp100_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:atp100w_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:atp100w_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:atp100w_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:atp100w_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:atp200_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:atp200_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:atp200_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:atp200_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:atp500_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:atp500_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:atp500_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:atp500_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:atp700_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:atp700_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:atp700_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:atp700_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:atp800_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:atp800_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:atp800_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:atp800_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:usg20-vpn_firmware:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:o:zyxel:usg20-vpn_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:usg20-vpn_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg20-vpn_firmware:5.36:patch1:*:*:*:*:*:*
    • (no CPE)range: 4.60 through 5.36 Patch 1
  • cpe:2.3:o:zyxel:usg_20w-vpn_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:usg_20w-vpn_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:usg_20w-vpn_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_20w-vpn_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:usg_40_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:usg_40_firmware:*:*:*:*:*:*:*:*range: >=4.60,<4.73
    • cpe:2.3:o:zyxel:usg_40_firmware:4.73:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_40_firmware:4.73:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:usg_40w_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:usg_40w_firmware:*:*:*:*:*:*:*:*range: >=4.60,<4.73
    • cpe:2.3:o:zyxel:usg_40w_firmware:4.73:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_40w_firmware:4.73:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:usg_60_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:usg_60_firmware:*:*:*:*:*:*:*:*range: >=4.60,<4.73
    • cpe:2.3:o:zyxel:usg_60_firmware:4.73:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_60_firmware:4.73:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:usg_60w_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:usg_60w_firmware:*:*:*:*:*:*:*:*range: >=4.60,<4.73
    • cpe:2.3:o:zyxel:usg_60w_firmware:4.73:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_60w_firmware:4.73:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:usg_flex_100_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:usg_flex_100_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:usg_flex_100_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_flex_100_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:usg_flex_100w_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:usg_flex_100w_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:usg_flex_100w_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_flex_100w_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:usg_flex_200_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:usg_flex_200_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:usg_flex_200_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_flex_200_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:usg_flex_500_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:usg_flex_500_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:usg_flex_500_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_flex_500_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:usg_flex_50_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:usg_flex_50_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:usg_flex_50_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_flex_50_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:usg_flex_50w_firmware:*:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:o:zyxel:usg_flex_50w_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:usg_flex_50w_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_flex_50w_firmware:5.36:patch1:*:*:*:*:*:*
    • (no CPE)range: 4.60 - 5.36 Patch 1
  • cpe:2.3:o:zyxel:usg_flex_700_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:usg_flex_700_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:usg_flex_700_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:usg_flex_700_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:vpn1000_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:vpn1000_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:vpn1000_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:vpn1000_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:vpn100_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:vpn100_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:vpn100_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:vpn100_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:vpn300_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:vpn300_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:vpn300_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:vpn300_firmware:5.36:patch1:*:*:*:*:*:*
  • cpe:2.3:o:zyxel:vpn50_firmware:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:o:zyxel:vpn50_firmware:*:*:*:*:*:*:*:*range: >=4.60,<5.36
    • cpe:2.3:o:zyxel:vpn50_firmware:5.36:-:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:vpn50_firmware:5.36:patch1:*:*:*:*:*:*
  • Range: 4.60 - 4.73 Patch 1
  • Range: 4.60 - 5.36 Patch 1
  • Range: 4.60 - 5.36 Patch 1
  • Range: 4.60 - 5.36 Patch 1
  • Range: 4.60 - 5.36 Patch 1
  • Zyxel/ATP seriescpe-rescue
    Range: 4.60 through 5.36 Patch 1
  • Range: 4.60 through 5.36 Patch 1
  • Range: 4.60 through 5.36 Patch 1
  • Zyxel/VPN seriescpe-rescue
    Range: 4.60 through 5.36 Patch 1
  • Range: 4.60 through 4.73 Patch 1

Patches

Vulnerability mechanics

References

2

News mentions

0

No linked articles in our index yet.