Zyxel
zyxel
326 CVEs • 881 products
Products (881)
Click to collapseToggle
Products (881)
Click to collapse
CVEs (326)
CVE VENDORS PRODUCTS UPDATED PUBLISHED CVSS |
|---|
A cross-site scripting (XSS) vulnerability in the Zyxel NBG-418N v2 firmware versions prior to V1.00(AARP.14)C0 could allow a remote authenticated attacker with administrator privileges to store malicious scripts using a...Show more |
The post-authentication command injection vulnerability in the Zyxel NBG6604 firmware version V1.01(ABIR.0)C0 could allow an authenticated attacker to execute some OS commands remotely by sending a crafted HTTP request. |
The sensitive information exposure vulnerability in the CGI “Export_Log” and the binary “zcmd” in Zyxel DX5401-B0 firmware versions prior to V5.17(ABYO.1)C0 could allow a remote unauthenticated attacker to read the syste...Show more |
The buffer overflow vulnerability in the library “libclinkc.so” of the web server “zhttpd” in Zyxel DX5401-B0 firmware versions prior to V5.17(ABYO.1)C0 could allow a remote unauthenticated attacker to execute some OS co...Show more |
1Zyxel 19Atp100 Firmware Atp100w FirmwareAtp200 Firmware+16 moreOct 27, 2025 Apr 25, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 Improper error message handling in Zyxel ZyWALL/USG series firmware versions 4.60 through 4.73, VPN series firmware versions 4.60 through 5.35, USG FLEX series firmware versions 4.60 through 5.35, and ATP series firmware...Show more |
1Zyxel 19Atp100 Firmware Atp100w FirmwareAtp200 Firmware+16 moreNov 21, 2024 Apr 24, 2023 N/A· v4 8.8 HIGH· v3 N/A· v2 The post-authentication command injection vulnerability in the CLI command of Zyxel ATP series firmware versions 4.32 through 5.35, USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4....Show more |
1Zyxel 19Atp100 Firmware Atp100w FirmwareAtp200 Firmware+16 moreFeb 25, 2026 Apr 24, 2023 N/A· v4 4.8 MEDIUM· v3 N/A· v2 The cross-site scripting (XSS) vulnerability in Zyxel ATP series firmware versions 4.32 through 5.35, USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.16 through 5.35, USG20(W)-VPN...Show more |
1Zyxel 51Atp100 Firmware Atp100w FirmwareAtp200 Firmware+48 moreNov 21, 2024 Apr 24, 2023 N/A· v4 6.5 MEDIUM· v3 N/A· v2 A post-authentication information exposure vulnerability in the CGI program of Zyxel ATP series firmware versions 4.32 through 5.35, USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4...Show more |
1Zyxel 18Atp100 Firmware Atp100w FirmwareAtp200 Firmware+15 moreNov 21, 2024 Apr 24, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A buffer overflow vulnerability in the “sdwan_iface_ipc” binary of Zyxel ATP series firmware versions 5.10 through 5.32, USG FLEX series firmware versions 5.00 through 5.32, USG FLEX 50(W) firmware versions 5.10 through...Show more |
1Zyxel 18Atp100 Firmware Atp100w FirmwareAtp200 Firmware+15 moreNov 21, 2024 Apr 24, 2023 N/A· v4 8.1 HIGH· v3 N/A· v2 The configuration parser of Zyxel ATP series firmware versions 5.10 through 5.35, USG FLEX series firmware versions 5.00 through 5.35, USG FLEX 50(W) firmware versions 5.10 through 5.35, USG20(W)-VPN firmware versions 5....Show more |
1Zyxel 12Usg 20w Vpn Firmware Usg Flex 100 FirmwareUsg Flex 100w Firmware+9 moreNov 21, 2024 Apr 24, 2023 N/A· v4 7.5 HIGH· v3 N/A· v2 A buffer overflow vulnerability in the “fbwifi_forward.cgi” CGI program of Zyxel USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.30 through 5.35, USG20(W)-VPN firmware versions 4.3...Show more |
1Zyxel 11Usg Flex 100 Firmware Usg Flex 100w FirmwareUsg Flex 200 Firmware+8 moreNov 21, 2024 Apr 24, 2023 N/A· v4 7.2 HIGH· v3 N/A· v2 A path traversal vulnerability in the “account_print.cgi” CGI program of Zyxel USG FLEX series firmware versions 4.50 through 5.35, and VPN series firmware versions 4.30 through 5.35, which could allow a remote authentic...Show more |
1Zyxel 11Usg Flex 100 Firmware Usg Flex 100w FirmwareUsg Flex 200 Firmware+8 moreNov 21, 2024 Apr 24, 2023 N/A· v4 8.1 HIGH· v3 N/A· v2 A post-authentication command injection vulnerability in the “account_operator.cgi” CGI program of Zyxel USG FLEX series firmware versions 4.50 through 5.35, and VPN series firmware versions 4.30 through 5.35, which coul...Show more |
1Zyxel 2Lte3202 M437 Firmware Lte3316 M604 FirmwareNov 21, 2024 Feb 21, 2023 N/A· v4 9.8 CRITICAL· v3 N/A· v2 A security misconfiguration vulnerability exists in the Zyxel LTE3316-M604 firmware version V2.00(ABMP.6)C0 due to a factory default misconfiguration intended for testing purposes. A remote attacker could leverage this v...Show more |
1Zyxel 6Nwa110ax Firmware Nwa210ax FirmwareWax510d Firmware+3 moreFeb 25, 2026 Feb 7, 2023 N/A· v4 4.3 MEDIUM· v3 N/A· v2 An improper check for unusual conditions in Zyxel NWA110AX firmware verisons prior to 6.50(ABTG.0)C0, which could allow a LAN attacker to cause a temporary denial-of-service (DoS) by sending crafted VLAN frames if the MA...Show more |
A cross-site scripting (XSS) vulnerability in Zyxel NBG-418N v2 firmware versions prior to V1.00(AARP.13)C0, which could allow an attacker to store malicious scripts in the Logs page of the GUI on a vulnerable device. A...Show more |
1Zyxel 25Atp100 Firmware Atp100w FirmwareAtp200 Firmware+22 moreNov 21, 2024 Feb 7, 2023 N/A· v4 7.2 HIGH· v3 N/A· v2 A post-authentication command injection vulnerability in the CLI command of Zyxel ZyWALL/USG series firmware versions 4.20 through 4.72, VPN series firmware versions 4.30 through 5.32, USG FLEX series firmware versions 4...Show more |
A vulnerability exists in the FTP server of the Zyxel AX7501-B0 firmware prior to V5.17(ABPC.3)C0, which processes symbolic links on external storage media. A local authenticated attacker with administrator privileges co...Show more |
A pair of spare WiFi credentials is stored in the configuration file of the Zyxel AX7501-B0 firmware prior to V5.17(ABPC.3)C0 in cleartext. An unauthenticated attacker could use the credentials to access the WLAN service...Show more |
1Zyxel 45Gs1350 12hp Firmware Gs1350 18hp FirmwareGs1350 26hp Firmware+42 moreNov 21, 2024 Jan 11, 2023 N/A· v4 8.2 HIGH· v3 N/A· v2 An improper check for unusual or exceptional conditions in the HTTP request processing function of Zyxel GS1920-24v2 firmware prior to V4.70(ABMH.8)C0, which could allow an unauthenticated attacker to corrupt the content...Show more |