CVE-2022-30525: Zyxel Multiple Firewalls OS Command Injection Vulnerability
A OS command injection vulnerability in the CGI program of Zyxel USG FLEX 100(W) firmware versions 5.00 through 5.21 Patch 1, USG FLEX 200 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 500 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 700 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 50(W) firmware versions 5.10 through 5.21 Patch 1, USG20(W)-VPN firmware versions 5.10 through 5.21 Patch 1, ATP series firmware versions 5.10 through 5.21 Patch 1, VPN series firmware versions 4.60 through 5.21 Patch 1, which could allow an attacker to modify specific files and then execute some OS commands on a vulnerable device.
Other sources
A command injection vulnerability in the CGI program of some Zyxel firewall versions could allow an attacker to modify specific files and then execute some OS commands on a vulnerable device.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2022-30525?
The severity of CVE-2022-30525 is critical with a CVSS score of 9.8.
How does CVE-2022-30525 affect Zyxel Multiple Firewalls?
CVE-2022-30525 affects Zyxel Multiple Firewalls by allowing OS command injection.
Which Zyxel firewalls are affected by CVE-2022-30525?
Zyxel USG FLEX 100(W) firmware versions 5.00 through 5.21 Patch 1, USG FLEX 200 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 500 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 700 firmware versions 5.00 through 5.21 Patch 1 are affected by CVE-2022-30525.
How do I fix CVE-2022-30525?
To fix CVE-2022-30525, users should update their Zyxel firewalls to firmware versions 5.21 Patch 2 or higher.
Where can I find more information about CVE-2022-30525?
More information about CVE-2022-30525 can be found at the following references: <ul><li><a href='http://packetstormsecurity.com/files/167176/Zyxel-Remote-Command-Execution.html'>Packet Storm Security</a></li><li><a href='http://packetstormsecurity.com/files/167182/Zyxel-Firewall-ZTP-Unauthenticated-Command-Injection.html'>Packet Storm Security</a></li><li><a href='http://packetstormsecurity.com/files/167372/Zyxel-USG-FLEX-5.21-Command-Injection.html'>Packet Storm Security</a></li></ul>