CVE-2025-9133
- EPSS 0.05%
- Veröffentlicht 21.10.2025 01:57:20
- Zuletzt bearbeitet 28.10.2025 19:18:15
A missing authorization vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.40, USG FLEX series firmware versions from V4.50 through V5.40, USG FLEX 50(W) series firmware versions from V4.16 through V5.40, and USG20(W)-VPN serie...
CVE-2025-8078
- EPSS 0.14%
- Veröffentlicht 21.10.2025 01:49:29
- Zuletzt bearbeitet 28.10.2025 19:36:21
A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.40, USG FLEX series firmware versions from V4.50 through V5.40, USG FLEX 50(W) series firmware versions from V4.16 through V5.40, and US...
CVE-2024-11667
- EPSS 43.99%
- Veröffentlicht 27.11.2024 10:15:04
- Zuletzt bearbeitet 27.10.2025 17:04:47
A directory traversal vulnerability in the web management interface of Zyxel ATP series firmware versions V5.00 through V5.38, USG FLEX series firmware versions V5.00 through V5.38, USG FLEX 50(W) series firmware versions V5.10 through V5.38, and USG...
CVE-2024-42061
- EPSS 0.59%
- Veröffentlicht 03.09.2024 03:15:03
- Zuletzt bearbeitet 13.12.2024 16:14:38
A reflected cross-site scripting (XSS) vulnerability in the CGI program "dynamic_script.cgi" of Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series firmware ve...
CVE-2024-7203
- EPSS 0.79%
- Veröffentlicht 03.09.2024 02:15:05
- Zuletzt bearbeitet 13.12.2024 16:14:32
A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4.60 through V5.38 and USG FLEX series firmware versions from V4.60 through V5.38 could allow an authenticated attacker with administrator privileges to...
CVE-2024-6343
- EPSS 0.19%
- Veröffentlicht 03.09.2024 02:15:05
- Zuletzt bearbeitet 13.12.2024 16:14:42
A buffer overflow vulnerability in the CGI program of Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series firmware versions from V4.16 through V5.38, and USG20...
CVE-2024-42060
- EPSS 0.56%
- Veröffentlicht 03.09.2024 02:15:04
- Zuletzt bearbeitet 13.12.2024 16:14:40
A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series firmware versions from V4.16 through V5.38, and US...
CVE-2024-42059
- EPSS 0.56%
- Veröffentlicht 03.09.2024 02:15:04
- Zuletzt bearbeitet 13.12.2024 16:14:36
A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V5.00 through V5.38, USG FLEX series firmware versions from V5.00 through V5.38, USG FLEX 50(W) series firmware versions from V5.00 through V5.38, and US...
CVE-2024-42058
- EPSS 0.27%
- Veröffentlicht 03.09.2024 02:15:04
- Zuletzt bearbeitet 13.12.2024 16:14:34
A null pointer dereference vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series firmware versions from V5.20 through V5.38, and USG20(W)-VPN se...
CVE-2024-42057
- EPSS 2.88%
- Veröffentlicht 03.09.2024 02:15:04
- Zuletzt bearbeitet 13.12.2024 16:14:44
A command injection vulnerability in the IPSec VPN feature of Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series firmware versions from V4.16 through V5.38, a...