peter bassill · operator
$ cve CVE-2022-30525 JSON

CVE-2022-30525 KEV EXPLOIT

9.8
CRITICAL · CVSS 3.1 · EPSS 99.9% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2022-06-06.

Description

A OS command injection vulnerability in the CGI program of Zyxel USG FLEX 100(W) firmware versions 5.00 through 5.21 Patch 1, USG FLEX 200 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 500 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 700 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 50(W) firmware versions 5.10 through 5.21 Patch 1, USG20(W)-VPN firmware versions 5.10 through 5.21 Patch 1, ATP series firmware versions 5.10 through 5.21 Patch 1, VPN series firmware versions 4.60 through 5.21 Patch 1, which could allow an attacker to modify specific files and then execute some OS commands on a vulnerable device.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS99.94% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-78
On CISA KEVyes — remediate by 2022-06-06
Public exploityes
Published2022-05-12
Last modified2026-06-17

CISA KEV

NameZyxel Multiple Firewalls OS Command Injection Vulnerability
Added2022-05-16
Due2022-06-06
Vendor / productZyxel / Multiple Firewalls
Ransomware usenone reported

Affected (32)

VendorProduct
zyxelatp100
zyxelatp100 firmware
zyxelatp100w
zyxelatp100w firmware
zyxelatp200
zyxelatp200 firmware
zyxelatp500
zyxelatp500 firmware
zyxelatp700
zyxelatp700 firmware
zyxelatp800
zyxelatp800 firmware
zyxelusg flex 100w
zyxelusg flex 100w firmware
zyxelusg flex 200
zyxelusg flex 200 firmware
zyxelusg flex 500
zyxelusg flex 500 firmware
zyxelusg flex 50w
zyxelusg flex 50w firmware
zyxelusg flex 700
zyxelusg flex 700 firmware
zyxelusg20w-vpn
zyxelusg20w-vpn firmware
zyxelvpn100
zyxelvpn100 firmware
zyxelvpn1000
zyxelvpn1000 firmware
zyxelvpn300
zyxelvpn300 firmware
zyxelvpn50
zyxelvpn50 firmware

Public exploits

SourceTitleDate
exploit-dbZyxel USG FLEX 5.21 - OS Command Injection2022-06-03

References

→ the Explorer  ·  watch your stack  ·  NVD