Zyxel ZyXEL ZyWALL USG是中国合勤(Zyxel)公司的一款网络安全防火墙设备。 Zyxel ZyWALL/USG 4.20至4.72版本、VPN 4.30至5.32版本、USG FLEX 4.50至5.32版本、ATP 4.32至5.32版本存在安全漏洞,该漏洞源于在CLI命令中存在认证后命令注入漏洞, 允许具有管理员权限的经过身份验证的攻击者执行操作系统命令。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Zyxel | ZyWALL/USG series firmware | 4.20 through 4.72 | - |
|
| Zyxel | VPN series firmware | 4.30 through 5.32 | - |
|
| Zyxel | USG FLEX series firmware | 4.50 through 5.32 | - |
|
| Zyxel | ATP series firmware | 4.32 through 5.32 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2022-45441 | 6.1 MEDIUM | Zyxel NBG-418N v2 跨站脚本漏洞 |
| CVE-2022-45854 | 4.3 MEDIUM | Zyxel NWA110AX 代码问题漏洞 |
No comments yet