CVE-2023-33011
- EPSS 0.12%
- Veröffentlicht 17.07.2023 18:15:09
- Zuletzt bearbeitet 21.11.2024 08:04:24
A format string vulnerability in the Zyxel ATP series firmware versions 5.10 through 5.36 Patch 2, USG FLEX series firmware versions 5.00 through 5.36 Patch 2, USG FLEX 50(W) series firmware versions 5.10 through 5.36 Patch 2, USG20(W)-VPN series fi...
CVE-2023-33012
- EPSS 5.08%
- Veröffentlicht 17.07.2023 18:15:09
- Zuletzt bearbeitet 21.11.2024 08:04:24
A command injection vulnerability in the configuration parser of the Zyxel ATP series firmware versions 5.10 through 5.36 Patch 2, USG FLEX series firmware versions 5.00 through 5.36 Patch 2, USG FLEX 50(W) series firmware versions 5.10 through 5.36...
- EPSS 0.11%
- Veröffentlicht 17.07.2023 18:15:09
- Zuletzt bearbeitet 21.11.2024 08:06:37
A command injection vulnerability in the hotspot management feature of the Zyxel ATP series firmware versions 4.60 through 5.36 Patch 2, USG FLEX series firmware versions 4.60 through 5.36 Patch 2, USG FLEX 50(W) series firmware versions 4.60 throug...
CVE-2023-34139
- EPSS 0.22%
- Veröffentlicht 17.07.2023 18:15:09
- Zuletzt bearbeitet 21.11.2024 08:06:37
A command injection vulnerability in the Free Time WiFi hotspot feature of the Zyxel USG FLEX series firmware versions 4.50 through 5.36 Patch 2 and VPN series firmware versions 4.20 through 5.36 Patch 2, could allow an unauthenticated, LAN-based att...
CVE-2023-34140
- EPSS 0.1%
- Veröffentlicht 17.07.2023 18:15:09
- Zuletzt bearbeitet 21.11.2024 08:06:38
A buffer overflow vulnerability in the Zyxel ATP series firmware versions 4.32 through 5.36 Patch 2, USG FLEX series firmware versions 4.50 through 5.36 Patch 2, USG FLEX 50(W) series firmware versions 4.16 through 5.36 Patch 2, USG20(W)-VPN series ...
- EPSS 0.11%
- Veröffentlicht 17.07.2023 18:15:09
- Zuletzt bearbeitet 21.11.2024 08:06:38
A command injection vulnerability in the access point (AP) management feature of the Zyxel ATP series firmware versions 5.00 through 5.36 Patch 2, USG FLEX series firmware versions 5.00 through 5.36 Patch 2, USG FLEX 50(W) series firmware versions 5...
CVE-2023-28767
- EPSS 0.12%
- Veröffentlicht 17.07.2023 17:15:09
- Zuletzt bearbeitet 21.11.2024 07:55:58
The configuration parser fails to sanitize user-controlled input in the Zyxel ATP series firmware versions 5.10 through 5.36, USG FLEX series firmware versions 5.00 through 5.36, USG FLEX 50(W) series firmware versions 5.10 through 5.36, USG20(W)-...
CVE-2021-35029
- EPSS 0.71%
- Veröffentlicht 02.07.2021 11:15:08
- Zuletzt bearbeitet 21.11.2024 06:11:42
An authentication bypasss vulnerability in the web-based management interface of Zyxel USG/Zywall series firmware versions 4.35 through 4.64 and USG Flex, ATP, and VPN series firmware versions 4.35 through 5.01, which could allow a remote attacker to...
CVE-2019-12583
- EPSS 59.06%
- Veröffentlicht 27.06.2019 14:15:10
- Zuletzt bearbeitet 21.11.2024 04:23:08
Missing Access Control in the "Free Time" component of several Zyxel UAG, USG, and ZyWall devices allows a remote attacker to generate guest accounts by directly accessing the account generator. This can lead to unauthorised network access or Denial ...