peter bassill · operator
$ cve CVE-2020-29583 JSON

CVE-2020-29583 KEV

9.8
CRITICAL · CVSS 3.1 · EPSS 90.2% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2022-05-03.

Description

Firmware version 4.60 of Zyxel USG devices contains an undocumented account (zyfwp) with an unchangeable password. The password for this account can be found in cleartext in the firmware. This account can be used by someone to login to the ssh server or web interface with admin privileges.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS90.16% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-522
On CISA KEVyes — remediate by 2022-05-03
Public exploitnone known
Published2020-12-22
Last modified2026-06-17

CISA KEV

NameZyxel Multiple Products Use of Hard-Coded Credentials Vulnerability
Added2021-11-03
Due2022-05-03
Vendor / productZyxel / Multiple Products
Ransomware usenone reported

Affected (40)

VendorProduct
zyxelatp100
zyxelatp100 firmware
zyxelatp100w
zyxelatp100w firmware
zyxelatp200
zyxelatp200 firmware
zyxelatp500
zyxelatp500 firmware
zyxelatp700
zyxelatp700 firmware
zyxelusg110
zyxelusg110 firmware
zyxelusg1100
zyxelusg1100 firmware
zyxelusg1900
zyxelusg1900 firmware
zyxelusg20-vpn
zyxelusg20-vpn firmware
zyxelusg20w-vpn
zyxelusg20w-vpn firmware
zyxelusg210
zyxelusg210 firmware
zyxelusg2200
zyxelusg2200 firmware
zyxelusg310
zyxelusg310 firmware
zyxelusg40
zyxelusg40 firmware
zyxelusg40w
zyxelusg40w firmware
zyxelusg60
zyxelusg60 firmware
zyxelusg60w
zyxelusg60w firmware
zyxelzywall110
zyxelzywall110 firmware
zyxelzywall1100
zyxelzywall1100 firmware
zyxelzywall310
zyxelzywall310 firmware

References

→ the Explorer  ·  watch your stack  ·  NVD