CVE-2022-0910
published 2022-05-24CVE-2022-0910: A downgrade from two-factor authentication to one-factor authentication vulnerability in the CGI program of Zyxel USG/ZyWALL series firmware versions 4.32…
PriorityP341medium6.5CVSS 3.1
AVNACLPRLUINSUCNIHAN
EPSS
0.67%
47.9th percentile
A downgrade from two-factor authentication to one-factor authentication vulnerability in the CGI program of Zyxel USG/ZyWALL series firmware versions 4.32 through 4.71, USG FLEX series firmware versions 4.50 through 5.21, ATP series firmware versions 4.32 through 5.21, and VPN series firmware versions 4.32 through 5.21, that could allow an authenticated attacker to bypass the second authentication phase to connect the IPsec VPN server even though the two-factor authentication (2FA) was enabled.
Affected
36 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| zyxel | atp100_firmware | 4.32 – 5.21 | — |
| zyxel | atp100w_firmware | 4.32 – 5.21 | — |
| zyxel | atp200_firmware | 4.32 – 5.21 | — |
| zyxel | atp500_firmware | 4.32 – 5.21 | — |
| zyxel | atp700_firmware | 4.32 – 5.21 | — |
| zyxel | atp800_firmware | 4.32 – 5.21 | — |
| zyxel | atp_series_firmware | — | — |
| zyxel | usg200_firmware | 4.32 – 4.71 | — |
| zyxel | usg20_firmware | 4.32 – 4.71 | — |
| zyxel | usg210_firmware | 4.32 – 4.71 | — |
| zyxel | usg2200_firmware | 4.32 – 4.71 | — |
| zyxel | usg300_firmware | 4.32 – 4.71 | — |
| zyxel | usg310_firmware | 4.32 – 4.71 | — |
| zyxel | usg_1100_firmware | 4.32 – 4.71 | — |
| zyxel | usg_110_firmware | 4.32 – 4.71 | — |
| zyxel | usg_1900_firmware | 4.32 – 4.71 | — |
| zyxel | usg_20w-vpn_firmware | 4.32 – 4.71 | — |
| zyxel | usg_20w_firmware | 4.32 – 4.71 | — |
| zyxel | usg_2200-vpn_firmware | 4.32 – 4.71 | — |
| zyxel | usg_310_firmware | 4.32 – 4.71 | — |
| zyxel | usg_40_firmware | 4.32 – 4.71 | — |
| zyxel | usg_40w_firmware | 4.32 – 4.71 | — |
| zyxel | usg_60_firmware | 4.32 – 4.71 | — |
| zyxel | usg_60w_firmware | 4.32 – 4.71 | — |
| zyxel | usg_flex_100_firmware | 4.50 – 5.21 | — |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:P/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-05-24
Published