CVEs (30)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
1Zyxel 11Usg Flex 100 Firmware Usg Flex 100w FirmwareUsg Flex 200 Firmware+8 moreNov 21, 2024 Apr 24, 2023 N/A· v4 7.2 HIGH· v3 N/A· v2 A path traversal vulnerability in the “account_print.cgi” CGI program of Zyxel USG FLEX series firmware versions 4.50 through 5.35, and VPN series firmware versions 4.30 through 5.35, which could allow a remote authentic...Show more |
1Zyxel 11Usg Flex 100 Firmware Usg Flex 100w FirmwareUsg Flex 200 Firmware+8 moreNov 21, 2024 Apr 24, 2023 N/A· v4 8.1 HIGH· v3 N/A· v2 A post-authentication command injection vulnerability in the “account_operator.cgi” CGI program of Zyxel USG FLEX series firmware versions 4.50 through 5.35, and VPN series firmware versions 4.30 through 5.35, which coul...Show more |
1Zyxel 25Atp100 Firmware Atp100w FirmwareAtp200 Firmware+22 moreNov 21, 2024 Feb 7, 2023 N/A· v4 7.2 HIGH· v3 N/A· v2 A post-authentication command injection vulnerability in the CLI command of Zyxel ZyWALL/USG series firmware versions 4.20 through 4.72, VPN series firmware versions 4.30 through 5.32, USG FLEX series firmware versions 4...Show more |
1Zyxel 65Atp100 Firmware Atp100w FirmwareAtp200 Firmware+62 moreNov 21, 2024 May 24, 2022 N/A· v4 7.8 HIGH· v3 7.2 HIGH· v2 A argument injection vulnerability in the 'packet-trace' CLI command of Zyxel USG/ZyWALL series firmware versions 4.09 through 4.71, USG FLEX series firmware versions 4.50 through 5.21, ATP series firmware versions 4.32...Show more |
1Zyxel 65Atp100 Firmware Atp100w FirmwareAtp200 Firmware+62 moreNov 21, 2024 May 24, 2022 N/A· v4 7.8 HIGH· v3 4.6 MEDIUM· v2 Multiple improper input validation flaws were identified in some CLI commands of Zyxel USG/ZyWALL series firmware versions 4.09 through 4.71, USG FLEX series firmware versions 4.50 through 5.21, ATP series firmware versi...Show more |
1Zyxel 32Atp100 Firmware Atp100w FirmwareAtp200 Firmware+29 moreNov 21, 2024 May 24, 2022 N/A· v4 6.5 MEDIUM· v3 4.0 MEDIUM· v2 A downgrade from two-factor authentication to one-factor authentication vulnerability in the CGI program of Zyxel USG/ZyWALL series firmware versions 4.32 through 4.71, USG FLEX series firmware versions 4.50 through 5.21...Show more |
1Zyxel 32Atp100 Firmware Atp100w FirmwareAtp200 Firmware+29 moreNov 21, 2024 May 24, 2022 N/A· v4 6.1 MEDIUM· v3 4.3 MEDIUM· v2 A cross-site scripting vulnerability was identified in the CGI program of Zyxel USG/ZyWALL series firmware versions 4.35 through 4.70, USG FLEX series firmware versions 4.50 through 5.20, ATP series firmware versions 4.3...Show more |
1Zyxel 23Atp100 Firmware Atp100w FirmwareAtp200 Firmware+20 moreNov 21, 2024 Mar 28, 2022 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An authentication bypass vulnerability in the CGI program of Zyxel USG/ZyWALL series firmware versions 4.20 through 4.70, USG FLEX series firmware versions 4.50 through 5.20, ATP series firmware versions 4.32 through 5.2...Show more |
1Zyxel 37Usg1000 Firmware Usg100 FirmwareUsg1100 Firmware+34 moreNov 21, 2024 Jul 2, 2021 N/A· v4 9.8 CRITICAL· v3 7.5 HIGH· v2 An authentication bypasss vulnerability in the web-based management interface of Zyxel USG/Zywall series firmware versions 4.35 through 4.64 and USG Flex, ATP, and VPN series firmware versions 4.35 through 5.01, which co...Show more |
1Zyxel 30Atp100 Firmware Atp100w FirmwareAtp200 Firmware+27 moreNov 7, 2025 Dec 22, 2020 N/A· v4 9.8 CRITICAL· v3 10.0 HIGH· v2 Firmware version 4.60 of Zyxel USG devices contains an undocumented account (zyfwp) with an unchangeable password. The password for this account can be found in cleartext in the firmware. This account can be used by some...Show more |