İçeriğe atla
Noroxi

zyxel kayıtları

zyxel üreticisine ait 331 yayımlanmış kayıt.

Tüm kayıtlar

331 kayıt
  • ZyXEL NAS products running firmware version 5.21 and earlier are vulnerable to pre-authentication command injection in weblogin.cgi

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    zyxel · nas326 firmware4 Mar 2020

  • A OS command injection vulnerability in the CGI program of Zyxel USG FLEX 100(W) firmware versions 5.00 through 5.21 Patch 1, USG FLEX 200 f

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100

    zyxel · usg flex 100w firmware12 May 2022

  • Improper error message handling in Zyxel ZyWALL/USG series firmware versions 4.60 through 4.73, VPN series firmware versions 4.60 through 5.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %99

    zyxel · atp100 firmware24 Nis 2023

  • The ZyXEL P660HN-T1A v1 TCLinux Fw $7.3.15.0 v001 / 3.40(ULM.0)b31 router distributed by TrueOnline has a command injection vulnerability in

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %94

    zyxel · p660hn-t1a v2 firmware2 May 2019

  • Firmware version 4.60 of Zyxel USG devices contains an undocumented account (zyfwp) with an unchangeable password.

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %90

    zyxel · usg20-vpn firmware22 Ara 2020

  • The pre-authentication command injection vulnerability in the Zyxel NAS326 firmware versions prior to V5.21(AAZF.14)C0, NAS540 firmware vers

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %83

    zyxel · nas326 firmware19 Haz 2023

  • CVE-2023-33010
    78Bu hafta

    A buffer overflow vulnerability in the ID processing function in Zyxel ATP series firmware versions 4.32 through 5.36 Patch 1, USG FLEX seri

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %29

    zyxel · atp100 firmware24 May 2023

  • CVE-2023-33009
    77Bu hafta

    A buffer overflow vulnerability in the notification function in Zyxel ATP series firmware versions 4.60 through 5.36 Patch 1, USG FLEX serie

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %28

    zyxel · atp100 firmware24 May 2023

  • CVE-2017-6884
    75Bu hafta

    A command injection vulnerability was discovered on the Zyxel EMG2926 home router with firmware V1.00(AAQT.4)b8.

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %35

    zyxel · emg2926 firmware6 Nis 2017

  • CVE-2024-40891
    71Bu hafta

    **UNSUPPORTED WHEN ASSIGNED** A post-authentication command injection vulnerability in the management commands of the legacy DSL CPE Zyxel V

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %22

    zyxel · vmg1312-b10a firmware4 Şub 2025

  • CVE-2024-40890
    71Bu hafta

    **UNSUPPORTED WHEN ASSIGNED** A post-authentication command injection vulnerability in the CGI program of the legacy DSL CPE Zyxel VMG4325-B

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %21

    zyxel · vmg1312-b10a firmware4 Şub 2025

  • CVE-2024-11667
    70Bu hafta

    A directory traversal vulnerability in the web management interface of Zyxel ATP series firmware versions V5.00 through V5.38, USG FLEX seri

    KritikCVSS 9,8KEVSilahlaştırılmışEPSS %3

    zyxel · zld27 Kas 2024

  • CVE-2022-0342
    68Bu hafta

    An authentication bypass vulnerability in the CGI program of Zyxel USG/ZyWALL series firmware versions 4.20 through 4.70, USG FLEX series fi

    KritikCVSS 9,8Kavram kanıtıEPSS %95

    zyxel · usg40 firmware28 Mar 2022

  • CVE-2024-29972
    66Bu hafta

    ** UNSUPPORTED WHEN ASSIGNED ** The command injection vulnerability in the CGI program "remote_help-cgi" in Zyxel NAS326 firmware versions b

    KritikCVSS 9,8Kavram kanıtıEPSS %89

    zyxel · nas326 firmware3 Haz 2024

  • CVE-2026-7273
    66Bu hafta

    A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow a

    YüksekCVSS 8,8KEVSilahlaştırılmışEPSS %3

    zyxel · gs1900-8 firmware15 Haz 2026

  • CVE-2024-29973
    65Bu hafta

    ** UNSUPPORTED WHEN ASSIGNED ** The command injection vulnerability in the “setCookie” parameter in Zyxel NAS326 firmware versions before V5

    KritikCVSS 9,8Kavram kanıtıEPSS %86

    zyxel · nas326 firmware3 Haz 2024

  • CVE-2021-4039
    60Bu hafta

    A command injection vulnerability in the web interface of the Zyxel NWA-1100-NH firmware could allow an attacker to execute arbitrary OS com

    KritikCVSS 9,8Kavram kanıtıEPSS %71

    zyxel · nwa1100-nh firmware1 Mar 2022

  • CVE-2023-37928
    53Planlayın

    A post-authentication command injection vulnerability in the WSGI server of the Zyxel NAS326 firmware version V5.21(AAZF.14)C0 and NAS542 fi

    YüksekCVSS 8,8İstismar yokEPSS %60

    zyxel · nas326 firmware29 Kas 2023

  • CVE-2023-4473
    51Planlayın

    A command injection vulnerability in the web server of the Zyxel NAS326 firmware version V5.21(AAZF.14)C0 and NAS542 firmware version V5.21(

    KritikCVSS 9,8İstismar yokEPSS %41

    zyxel · nas326 firmware29 Kas 2023

  • CVE-2023-35138
    51Planlayın

    A command injection vulnerability in the “show_zysync_server_contents” function of the Zyxel NAS326 firmware version V5.21(AAZF.14)C0 and NA

    KritikCVSS 9,8İstismar yokEPSS %40

    zyxel · nas326 firmware29 Kas 2023

  • CVE-2019-12583
    49Planlayın

    Missing Access Control in the "Free Time" component of several Zyxel UAG, USG, and ZyWall devices allows a remote attacker to generate guest

    KritikCVSS 9,1Kavram kanıtıEPSS %44

    zyxel · uag2100 firmware27 Haz 2019

  • CVE-2023-4474
    48Planlayın

    The improper neutralization of special elements in the WSGI server of the Zyxel NAS326 firmware version V5.21(AAZF.14)C0 and NAS542 firmware

    KritikCVSS 9,8İstismar yokEPSS %30

    zyxel · nas326 firmware29 Kas 2023

  • CVE-2023-28770
    47Planlayın

    The sensitive information exposure vulnerability in the CGI “Export_Log” and the binary “zcmd” in Zyxel DX5401-B0 firmware versions prior to

    YüksekCVSS 7,5SilahlaştırılmışEPSS %58

    zyxel · dx5401-b0 firmware27 Nis 2023

  • CVE-2024-29974
    46Planlayın

    ** UNSUPPORTED WHEN ASSIGNED ** The remote code execution vulnerability in the CGI program “file_upload-cgi” in Zyxel NAS326 firmware versio

    KritikCVSS 9,8İstismar yokEPSS %23

    zyxel · nas326 firmware3 Haz 2024

  • CVE-2017-18371
    46Planlayın

    The ZyXEL P660HN-T1A v2 TCLinux Fw #7.3.37.6 router distributed by TrueOnline has three user accounts with default passwords, including two

    KritikCVSS 9,8SilahlaştırılmışEPSS %23

    zyxel · p660hn-t1a v2 firmware2 May 2019