CVE-2023-33009

Vulnerability updated 7 months ago (2024-11-29T13:37:03.056Z)
Download STIX
Preview STIX
CVE-2023-33009 is a critical vulnerability identified in Zyxel devices, specifically their line of Firewall and VPN products. It was discovered as part of a sophisticated attack that compromised 22 Danish energy firms, exploiting this flaw along with another zero-day vulnerability, CVE-2023-33010, and a previously known vulnerability, CVE-2023-28771. These vulnerabilities allowed for unauthenticated remote code execution (RCE), providing the attackers with extensive control over the compromised systems. The campaign against the Danish energy firms consisted of two waves, with the second wave believed to have exploited the newly discovered vulnerabilities CVE-2023-33009 and CVE-2023-33010. SektorCERT researchers found that these vulnerabilities were disclosed and patched by Zyxel shortly after their exploitation, on May 24. The use of new tools and tactics in conjunction with these zero-day flaws indicates a high level of sophistication and preparation on the part of the attackers. In response to the discovery and exploitation of these vulnerabilities, Zyxel has released a security advisory and patches to address the issues. They have provided mitigation strategies and updates for their customers to prevent further compromise of their devices. Despite these efforts, the successful exploitation of CVE-2023-33009 and CVE-2023-33010 underscores the ongoing challenges faced by cybersecurity teams in protecting against advanced persistent threats.
Description last updated: 2024-05-04T17:55:37.833Z
What's your take? (Question 1 of 1)
Help tune the shared Cybergeist dataset, assist your peers, and earn karma. Expand the panel to get started.
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Zyxel
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Associated Vulnerabilities
To see the evidence that has resulted in these vulnerability associations, create a free account
Alias DescriptionAssociation TypeVotes
The vulnerability CVE-2023-33010 is associated with CVE-2023-33009. Unspecified
2
Source Document References
Information about the CVE-2023-33009 Vulnerability was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
CERT-EU
a year ago
CERT-EU
a year ago
CERT-EU
a year ago
CERT-EU
2 years ago
InfoSecurity-magazine
2 years ago
DARKReading
2 years ago
CERT-EU
2 years ago
CERT-EU
2 years ago
CERT-EU
2 years ago
CERT-EU
2 years ago
CERT-EU
2 years ago
CERT-EU
2 years ago
CERT-EU
2 years ago
Securityaffairs
2 years ago
CISA
2 years ago
Malwarebytes
2 years ago
Checkpoint
2 years ago
CERT-EU
2 years ago
Securityaffairs
2 years ago
CERT-EU
2 years ago