CRITICAL🚩 CISA KEV⚡ EXPLOIT✓ PATCH🇵🇱 Wersja polska

CVE-2022-30525

CVSS 9.8v3.1pub. 2022-05-12upd. 2025-10-27

A OS command injection vulnerability in the CGI program of Zyxel USG FLEX 100(W) firmware versions 5.00 through 5.21 Patch 1, USG FLEX 200 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 500 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 700 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 50(W) firmware versions 5.10 through 5.21 Patch 1, USG20(W)-VPN firmware versions 5.10 through 5.21 Patch 1, ATP series firmware versions 5.10 through 5.21 Patch 1, VPN series firmware versions 4.60 through 5.21 Patch 1, which could allow an attacker to modify specific files and then execute some OS commands on a vulnerable device.

CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
  • Zyxel Atp100

    HW
    Zyxel
    all versions
  • Zyxel Atp100 Firmware

    OS
    Zyxel
    5.10 – 5.30 (excl.)
  • Zyxel Atp100w

    HW
    Zyxel
    all versions
  • Zyxel Atp100w Firmware

    OS
    Zyxel
    5.10 – 5.30 (excl.)
  • Zyxel Atp200

    HW
    Zyxel
    all versions
  • Zyxel Atp200 Firmware

    OS
    Zyxel
    5.10 – 5.30 (excl.)
  • Zyxel Atp500

    HW
    Zyxel
    all versions
  • Zyxel Atp500 Firmware

    OS
    Zyxel
    5.10 – 5.30 (excl.)
  • Zyxel Atp700

    HW
    Zyxel
    all versions
  • Zyxel Atp700 Firmware

    OS
    Zyxel
    5.10 – 5.30 (excl.)
  • Zyxel Atp800

    HW
    Zyxel
    all versions
  • Zyxel Atp800 Firmware

    OS
    Zyxel
    5.10 – 5.30 (excl.)
  • Zyxel Usg20w Vpn

    HW
    Zyxel
    all versions
  • Zyxel Usg20w Vpn Firmware

    OS
    Zyxel
    5.10 – 5.30 (excl.)
  • Zyxel Usg Flex 100w

    HW
    Zyxel
    all versions
  • Zyxel Usg Flex 100w Firmware

    OS
    Zyxel
    5.00 – 5.30 (excl.)
  • Zyxel Usg Flex 200

    HW
    Zyxel
    all versions
  • Zyxel Usg Flex 200 Firmware

    OS
    Zyxel
    5.00 – 5.30 (excl.)
  • Zyxel Usg Flex 500

    HW
    Zyxel
    all versions
  • Zyxel Usg Flex 500 Firmware

    OS
    Zyxel
    5.00 – 5.30
  • Zyxel Usg Flex 50w

    HW
    Zyxel
    all versions
  • Zyxel Usg Flex 50w Firmware

    OS
    Zyxel
    5.10 – 5.30 (excl.)
  • Zyxel Usg Flex 700

    HW
    Zyxel
    all versions
  • Zyxel Usg Flex 700 Firmware

    OS
    Zyxel
    5.00 – 5.30 (excl.)
  • Zyxel Vpn100

    HW
    Zyxel
    all versions
  • Zyxel Vpn1000

    HW
    Zyxel
    all versions
  • Zyxel Vpn1000 Firmware

    OS
    Zyxel
    4.60 – 5.30 (excl.)
  • Zyxel Vpn100 Firmware

    OS
    Zyxel
    4.60 – 5.30 (excl.)
  • Zyxel Vpn300

    HW
    Zyxel
    all versions
  • Zyxel Vpn300 Firmware

    OS
    Zyxel
    4.60 – 5.30 (excl.)

CISA KEV — detailsi

Vendori
Zyxel
Producti
Multiple Firewalls
Added to KEVi
May 16, 2022
Remediation deadline (US Federal)i
June 6, 2022(overdue)
Required action (CISA)i

Apply updates per vendor instructions.

CISA descriptioni

A command injection vulnerability in the CGI program of some Zyxel firewall versions could allow an attacker to modify specific files and then execute some OS commands on a vulnerable device.

🔴
IMMEDIATE ACTION
Actively exploited in the wild (CISA KEV). Patch immediately.
CISA DEADLINE: 6 czerwca 2022
Tags
VPNCommand Injection
CWE
References

Related vulnerabilities

CVE-2023-33009CRITICAL9.8⚠ KEVPL ✓same product

Buffer overflow w firmware Zyxel — RCE bez uwierzytelnienia

CVE-2023-33010CRITICAL9.8⚠ KEVPL ✓same product

Buffer overflow w firmware Zyxel — RCE bez uwierzytelnienia (firewalle/VPN)

CVE-2023-28771CRITICAL9.8⚠ KEVPL ✓same product

Zyxel Firewall/VPN — zdalny command injection bez uwierzytelnienia (RCE)

CVE-2020-29583CRITICAL9.8⚠ KEVPL ✓same product

Zyxel USG – ukryte konto z hasłem jawnym w firmware 4.60

CVE-2020-9054CRITICAL9.8⚠ KEVPL ✓same product

Pre-auth command injection w urządzeniach Zyxel NAS — RCE z uprawnieniami root