cbcvebase.

Zyxel Usg Flex 50 Series Firmware vulnerabilities

27 known vulnerabilities affecting zyxel/usg_flex_50_series_firmware.

Total CVEs
27
CISA KEV
1
actively exploited
Public exploits
1
Exploited in wild
2
Severity breakdown
CRITICAL1HIGH15MEDIUM11

Vulnerabilities

Page 1 of 2
CVE-2024-11667P1CRITICALCVSS 9.8KEVRansomwarevversions V5.10 through V5.382024-11-27
CVE-2024-11667 [CRITICAL] CWE-22 CVE-2024-11667: A directory traversal vulnerability in the web management interface of Zyxel ATP series firmware ver A directory traversal vulnerability in the web management interface of Zyxel ATP series firmware versions V5.00 through V5.38, USG FLEX series firmware versions V5.00 through V5.38, USG FLEX 50(W) series firmware versions V5.10 through V5.38, and USG20(W)-VPN series firmware versions V5.10 through V5.38 could allow an attacker to download or upload
nvd
CVE-2024-42057P1HIGHCVSS 8.1ExploitedRansomwarevversions V4.16 through V5.382024-09-03
CVE-2024-42057 [HIGH] CWE-78 CVE-2024-42057: A command injection vulnerability in the IPSec VPN feature of Zyxel ATP series firmware versions fro A command injection vulnerability in the IPSec VPN feature of Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series firmware versions from V4.16 through V5.38, and USG20(W)-VPN series firmware versions from V4.16 through V5.38 could allow an unauthenticated attacke
nvd
CVE-2023-33012P2HIGHCVSS 8.8PoCv5.10 through 5.36 Patch 22023-07-17
CVE-2023-33012 [HIGH] CWE-78 CVE-2023-33012: A command injection vulnerability in the configuration parser of the Zyxel ATP series firmware versi A command injection vulnerability in the configuration parser of the Zyxel ATP series firmware versions 5.10 through 5.36 Patch 2, USG FLEX series firmware versions 5.00 through 5.36 Patch 2, USG FLEX 50(W) series firmware versions 5.10 through 5.36 Patch 2, USG20(W)-VPN series firmware versions 5.10 through 5.36 Patch 2, and VPN series firmware versio
nvd
CVE-2025-9133P2HIGHCVSS 8.1vversions from V4.16 through V5.402025-10-21
CVE-2025-9133 [HIGH] CWE-862 CVE-2025-9133: A missing authorization vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.40 A missing authorization vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.40, USG FLEX series firmware versions from V4.50 through V5.40, USG FLEX 50(W) series firmware versions from V4.16 through V5.40, and USG20(W)-VPN series firmware versions from V4.16 through V5.40 could allow a semi-authenticated attacker—who has completed
nvd
CVE-2023-6764P3HIGHCVSS 8.1vversion 4.16 through 5.37 Patch 12024-02-20
CVE-2023-6764 [HIGH] CWE-134 CVE-2023-6764: A format string vulnerability in a function of the IPSec VPN feature in Zyxel ATP series A format string vulnerability in a function of the IPSec VPN feature in Zyxel ATP series firmware versions from 4.32 through 5.37 Patch 1, USG FLEX series firmware versions from 4.50 through 5.37 Patch 1, USG FLEX 50(W) series firmware versions from 4.16 through 5.37 Patch 1, and USG20(W)-VPN series firmware versions from 4.16 through 5.37 Patch 1 could allow an at
nvd
CVE-2025-8078P3HIGHCVSS 7.2vversions from V4.16 through V5.402025-10-21
CVE-2025-8078 [HIGH] CWE-78 CVE-2025-8078: A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4. A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.40, USG FLEX series firmware versions from V4.50 through V5.40, USG FLEX 50(W) series firmware versions from V4.16 through V5.40, and USG20(W)-VPN series firmware versions from V4.16 through V5.40 could allow an authenticated attacker with ad
nvd
CVE-2025-11730P3HIGHCVSS 7.2vversions from V5.35 through V5.412026-02-05
CVE-2025-11730 [HIGH] CWE-78 CVE-2025-11730: A post‑authentication command injection vulnerability in the Dynamic DNS (DDNS) configuration CLI co A post‑authentication command injection vulnerability in the Dynamic DNS (DDNS) configuration CLI command in Zyxel ATP series firmware versions from V5.35 through V5.41, USG FLEX series firmware versions from V5.35 through V5.41, USG FLEX 50(W) series firmware versions from V5.35 through V5.41, and USG20(W)-VPN series firmware versions from V5.35 throu
nvd
CVE-2023-28767P3HIGHCVSS 8.8v5.10 through 5.362023-07-17
CVE-2023-28767 [HIGH] CWE-78 CVE-2023-28767: The configuration parser fails to sanitize user-controlled input in the Zyxel ATP series firmware ve The configuration parser fails to sanitize user-controlled input in the Zyxel ATP series firmware versions 5.10 through 5.36, USG FLEX series firmware versions 5.00 through 5.36, USG FLEX 50(W) series firmware versions 5.10 through 5.36, USG20(W)-VPN series firmware versions 5.10 through 5.36, and VPN series firmware versions 5.00 through 5.36. An una
nvd
CVE-2023-33011P3HIGHCVSS 8.8v5.10 through 5.36 Patch 22023-07-17
CVE-2023-33011 [HIGH] CWE-134 CVE-2023-33011: A format string vulnerability in the Zyxel ATP series firmware versions 5.10 through 5.36 Patch 2, U A format string vulnerability in the Zyxel ATP series firmware versions 5.10 through 5.36 Patch 2, USG FLEX series firmware versions 5.00 through 5.36 Patch 2, USG FLEX 50(W) series firmware versions 5.10 through 5.36 Patch 2, USG20(W)-VPN series firmware versions 5.10 through 5.36 Patch 2, and VPN series firmware versions 5.00 through 5.36 Patch 2, c
nvd
CVE-2024-42059P3HIGHCVSS 7.2vversions V5.00 through V5.382024-09-03
CVE-2024-42059 [HIGH] CWE-78 CVE-2024-42059: A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V5. A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V5.00 through V5.38, USG FLEX series firmware versions from V5.00 through V5.38, USG FLEX 50(W) series firmware versions from V5.00 through V5.38, and USG20(W)-VPN series firmware versions from V5.00 through V5.38 could allow an authenticated attacker with
nvd
CVE-2024-42060P3HIGHCVSS 7.2vversions V4.16 through V5.382024-09-03
CVE-2024-42060 [HIGH] CWE-78 CVE-2024-42060: A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4. A post-authentication command injection vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series firmware versions from V4.16 through V5.38, and USG20(W)-VPN series firmware versions from V4.16 through V5.38 could allow an authenticated attacker with
nvd
CVE-2023-6398P3HIGHCVSS 7.2v version 4.16 through 5.37 Patch 12024-02-20
CVE-2023-6398 [HIGH] CWE-78 CVE-2023-6398: A post-authentication command injection vulnerability in the file upload binary in Zyxel ATP series A post-authentication command injection vulnerability in the file upload binary in Zyxel ATP series firmware versions from 4.32 through 5.37 Patch 1, USG FLEX series firmware versions from 4.50 through 5.37 Patch 1, USG FLEX 50(W) series firmware versions from 4.16 through 5.37 Patch 1, USG20(W)-VPN series firmware versions from 4.16 through 5.37 Patch 1,
nvd
CVE-2023-4398P3HIGHCVSS 7.5vversions 4.16 through 5.372023-11-28
CVE-2023-4398 [HIGH] CWE-190 CVE-2023-4398: An integer overflow vulnerability in the source code of the QuickSec IPSec toolkit used in the VPN f An integer overflow vulnerability in the source code of the QuickSec IPSec toolkit used in the VPN feature of the Zyxel ATP series firmware versions 4.32 through 5.37, USG FLEX series firmware versions 4.50 through 5.37, USG FLEX 50(W) series firmware versions 4.16 through 5.37, USG20(W)-VPN series firmware versions 4.16 through 5.37, and VPN series fir
nvd
CVE-2023-34138P3HIGHCVSS 8.0v4.60 through 5.36 Patch 22023-07-17
CVE-2023-34138 [HIGH] CWE-78 CVE-2023-34138: A command injection vulnerability in the hotspot management feature of the Zyxel ATP series firmware A command injection vulnerability in the hotspot management feature of the Zyxel ATP series firmware versions 4.60 through 5.36 Patch 2, USG FLEX series firmware versions 4.60 through 5.36 Patch 2, USG FLEX 50(W) series firmware versions 4.60 through 5.36 Patch 2, USG20(W)-VPN series firmware versions 4.60 through 5.36 Patch 2, and VPN series firmware
nvd
CVE-2023-34141P3HIGHCVSS 8.0v5.00 through 5.36 Patch 22023-07-17
CVE-2023-34141 [HIGH] CWE-78 CVE-2023-34141: A command injection vulnerability in the access point (AP) management feature of the Zyxel ATP serie A command injection vulnerability in the access point (AP) management feature of the Zyxel ATP series firmware versions 5.00 through 5.36 Patch 2, USG FLEX series firmware versions 5.00 through 5.36 Patch 2, USG FLEX 50(W) series firmware versions 5.00 through 5.36 Patch 2, USG20(W)-VPN series firmware versions 5.00 through 5.36 Patch 2, VPN series fir
nvd
CVE-2024-42058P3HIGHCVSS 7.5vversions V5.20 through V5.382024-09-03
CVE-2024-42058 [HIGH] CWE-476 CVE-2024-42058: A null pointer dereference vulnerability in Zyxel ATP series firmware versions from V4.32 through V5 A null pointer dereference vulnerability in Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series firmware versions from V5.20 through V5.38, and USG20(W)-VPN series firmware versions from V5.20 through V5.38 could allow an unauthenticated attacker to cause DoS co
nvd
CVE-2023-6399P3MEDIUMCVSS 6.5vversion 4.16 through 5.37 Patch 12024-02-20
CVE-2023-6399 [MEDIUM] CWE-134 CVE-2023-6399: A format string vulnerability in Zyxel ATP series firmware versions from 4.32 through 5.37 Patch 1, A format string vulnerability in Zyxel ATP series firmware versions from 4.32 through 5.37 Patch 1, USG FLEX series firmware versions from 4.50 through 5.37 Patch 1, USG FLEX 50(W) series firmware versions from 4.16 through 5.37 Patch 1, USG20(W)-VPN series firmware versions from 4.16 through 5.37 Patch 1, and USG FLEX H series firmware versions from 1
nvd
CVE-2023-35139P4MEDIUMCVSS 6.1vversions 5.10 through 5.372023-11-28
CVE-2023-35139 [MEDIUM] CWE-79 CVE-2023-35139: A cross-site scripting (XSS) vulnerability in the CGI program of the Zyxel ATP series firmware versi A cross-site scripting (XSS) vulnerability in the CGI program of the Zyxel ATP series firmware versions 5.10 through 5.37, USG FLEX series firmware versions 5.00 through 5.37, USG FLEX 50(W) series firmware versions 5.10 through 5.37, USG20(W)-VPN series firmware versions 5.10 through 5.37, and VPN series firmware versions 5.00 through 5.37, could al
nvd
CVE-2023-34140P4MEDIUMCVSS 6.5v4.16 through 5.36 Patch 22023-07-17
CVE-2023-34140 [MEDIUM] CWE-120 CVE-2023-34140: A buffer overflow vulnerability in the Zyxel ATP series firmware versions 4.32 through 5.36 Patch 2, A buffer overflow vulnerability in the Zyxel ATP series firmware versions 4.32 through 5.36 Patch 2, USG FLEX series firmware versions 4.50 through 5.36 Patch 2, USG FLEX 50(W) series firmware versions 4.16 through 5.36 Patch 2, USG20(W)-VPN series firmware versions 4.16 through 5.36 Patch 2, VPN series firmware versions 4.30 through 5.36 Patch 2, N
nvd
CVE-2024-42061P4MEDIUMCVSS 6.1vversions V4.16 through V5.382024-09-03
CVE-2024-42061 [MEDIUM] CWE-79 CVE-2024-42061: A reflected cross-site scripting (XSS) vulnerability in the CGI program "dynamic_script.cgi" of Zyxe A reflected cross-site scripting (XSS) vulnerability in the CGI program "dynamic_script.cgi" of Zyxel ATP series firmware versions from V4.32 through V5.38, USG FLEX series firmware versions from V4.50 through V5.38, USG FLEX 50(W) series firmware versions from V4.16 through V5.38, and USG20(W)-VPN series firmware versions from V4.16 through V5.38 co
nvd