First published: Thu Feb 09 2023(Updated: )
A vulnerability, found in EdgeRouters Version 2.0.9-hotfix.5 and earlier and UniFi Security Gateways (USG) Version 4.4.56 and earlier with their DHCPv6 prefix delegation set to dhcpv6-stateless or dhcpv6-stateful, allows a malicious actor directly connected to the WAN interface of an affected device to create a remote code execution vulnerability.
Credit: support@hackerone.com
Affected Software | Affected Version | How to fix |
---|---|---|
Zyxel USG firmware | <4.4.57 | |
Ubiquiti USG-Pro-4 | ||
ui usg-pro-4 firmware | <4.4.57 | |
ui usg-pro-4 firmware | ||
ui ER-10X Firmware | <2.0.9 | |
ui ER-10X Firmware | =2.0.9 | |
ui ER-10X Firmware | =2.0.9-hotfix2 | |
ui ER-10X Firmware | =2.0.9-hotfix4 | |
ui ER-10X Firmware | =2.0.9-hotfix5 | |
ui ER-10X Firmware | ||
Ubiquiti EdgeRouter Firmware | <2.0.9 | |
Ubiquiti EdgeRouter Firmware | =2.0.9 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix2 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix4 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix5 | |
UI ER-12 Firmware | ||
ui ER-12P Firmware | <2.0.9 | |
ui ER-12P Firmware | =2.0.9 | |
ui ER-12P Firmware | =2.0.9-hotfix2 | |
ui ER-12P Firmware | =2.0.9-hotfix4 | |
ui ER-12P Firmware | =2.0.9-hotfix5 | |
ui er-12p firmware | ||
Ubiquiti EdgeRouter Firmware | <2.0.9 | |
Ubiquiti EdgeRouter Firmware | =2.0.9 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix2 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix4 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix5 | |
UI ER-4 Firmware | ||
ui ER-6P Firmware | <2.0.9 | |
ui ER-6P Firmware | =2.0.9 | |
ui ER-6P Firmware | =2.0.9-hotfix2 | |
ui ER-6P Firmware | =2.0.9-hotfix4 | |
ui ER-6P Firmware | =2.0.9-hotfix5 | |
ui er-6p firmware | ||
ui erpro-8 firmware | <2.0.9 | |
ui erpro-8 firmware | =2.0.9 | |
ui erpro-8 firmware | =2.0.9-hotfix2 | |
ui erpro-8 firmware | =2.0.9-hotfix4 | |
ui erpro-8 firmware | =2.0.9-hotfix5 | |
UI ER-8-XG Firmware | ||
ui EdgeRouter X firmware | <2.0.9 | |
ui EdgeRouter X firmware | =2.0.9 | |
ui EdgeRouter X firmware | =2.0.9-hotfix2 | |
ui EdgeRouter X firmware | =2.0.9-hotfix4 | |
ui EdgeRouter X firmware | =2.0.9-hotfix5 | |
ui er-x firmware | ||
ui er-x-sfp firmware | <2.0.9 | |
ui er-x-sfp firmware | =2.0.9 | |
ui er-x-sfp firmware | =2.0.9-hotfix2 | |
ui er-x-sfp firmware | =2.0.9-hotfix4 | |
ui er-x-sfp firmware | =2.0.9-hotfix5 | |
ui er-x-sfp firmware | ||
All of | ||
Zyxel USG firmware | <4.4.57 | |
Ubiquiti USG-Pro-4 | ||
All of | ||
ui usg-pro-4 firmware | <4.4.57 | |
ui usg-pro-4 firmware | ||
All of | ||
Any of | ||
ui ER-10X Firmware | <2.0.9 | |
ui ER-10X Firmware | =2.0.9 | |
ui ER-10X Firmware | =2.0.9-hotfix2 | |
ui ER-10X Firmware | =2.0.9-hotfix4 | |
ui ER-10X Firmware | =2.0.9-hotfix5 | |
ui ER-10X Firmware | ||
All of | ||
Any of | ||
Ubiquiti EdgeRouter Firmware | <2.0.9 | |
Ubiquiti EdgeRouter Firmware | =2.0.9 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix2 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix4 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix5 | |
UI ER-12 Firmware | ||
All of | ||
Any of | ||
ui ER-12P Firmware | <2.0.9 | |
ui ER-12P Firmware | =2.0.9 | |
ui ER-12P Firmware | =2.0.9-hotfix2 | |
ui ER-12P Firmware | =2.0.9-hotfix4 | |
ui ER-12P Firmware | =2.0.9-hotfix5 | |
ui er-12p firmware | ||
All of | ||
Any of | ||
Ubiquiti EdgeRouter Firmware | <2.0.9 | |
Ubiquiti EdgeRouter Firmware | =2.0.9 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix2 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix4 | |
Ubiquiti EdgeRouter Firmware | =2.0.9-hotfix5 | |
UI ER-4 Firmware | ||
All of | ||
Any of | ||
ui ER-6P Firmware | <2.0.9 | |
ui ER-6P Firmware | =2.0.9 | |
ui ER-6P Firmware | =2.0.9-hotfix2 | |
ui ER-6P Firmware | =2.0.9-hotfix4 | |
ui ER-6P Firmware | =2.0.9-hotfix5 | |
ui er-6p firmware | ||
All of | ||
Any of | ||
ui erpro-8 firmware | <2.0.9 | |
ui erpro-8 firmware | =2.0.9 | |
ui erpro-8 firmware | =2.0.9-hotfix2 | |
ui erpro-8 firmware | =2.0.9-hotfix4 | |
ui erpro-8 firmware | =2.0.9-hotfix5 | |
UI ER-8-XG Firmware | ||
All of | ||
Any of | ||
ui EdgeRouter X firmware | <2.0.9 | |
ui EdgeRouter X firmware | =2.0.9 | |
ui EdgeRouter X firmware | =2.0.9-hotfix2 | |
ui EdgeRouter X firmware | =2.0.9-hotfix4 | |
ui EdgeRouter X firmware | =2.0.9-hotfix5 | |
ui er-x firmware | ||
All of | ||
Any of | ||
ui er-x-sfp firmware | <2.0.9 | |
ui er-x-sfp firmware | =2.0.9 | |
ui er-x-sfp firmware | =2.0.9-hotfix2 | |
ui er-x-sfp firmware | =2.0.9-hotfix4 | |
ui er-x-sfp firmware | =2.0.9-hotfix5 | |
ui er-x-sfp firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-23912 is a vulnerability found in EdgeRouters Version 2.0.9-hotfix.5 and earlier and UniFi Security Gateways (USG) Version 4.4.56 and earlier with their DHCPv6 prefix delegation set to dhcpv6-stateless or dhcpv6-stateful, allowing a malicious actor to directly connect to the WAN interface of the affected device.
CVE-2023-23912 has a severity rating of 8.8, which is considered high.
To fix CVE-2023-23912, update your EdgeRouters to Version 2.0.9-hotfix.6 or later, or update your UniFi Security Gateways (USG) to Version 4.4.57 or later.
If you are using EdgeRouters Version 2.0.9-hotfix.5 or earlier, or UniFi Security Gateways (USG) Version 4.4.56 or earlier with DHCPv6 prefix delegation set to dhcpv6-stateless or dhcpv6-stateful, then your device is affected by CVE-2023-23912.
You can find more information about CVE-2023-23912 in the security advisory bulletin released by the community.ui.com. Please refer to the following link: [Security Advisory Bulletin](https://community.ui.com/releases/Security-Advisory-Bulletin-028-028/696e4e3b-718c-4da4-9a21-965a85633b5f).