PT-2022-4534 · Zyxel · Zyxel Usg Flex 50+8
Published
2022-07-19
·
Updated
2022-08-22
·
CVE-2022-2030
CVSS v2.0
6.8
Medium
| Vector | AV:N/AC:L/Au:S/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Zyxel USG FLEX 100(W) firmware versions 4.50 through 5.30
Zyxel USG FLEX 200 firmware versions 4.50 through 5.30
Zyxel USG FLEX 500 firmware versions 4.50 through 5.30
Zyxel USG FLEX 700 firmware versions 4.50 through 5.30
Zyxel USG FLEX 50(W) firmware versions 4.16 through 5.30
Zyxel USG20(W)-VPN firmware versions 4.16 through 5.30
Zyxel ATP series firmware versions 4.32 through 5.30
Zyxel VPN series firmware versions 4.30 through 5.30
Zyxel USG/ZyWALL series firmware versions 4.11 through 4.72
Description
A directory traversal vulnerability caused by specific character sequences within an improperly sanitized URL was identified in some CGI programs of Zyxel devices. This could allow an authenticated attacker to access some restricted files on a vulnerable device. The vulnerability exists due to incorrect limitation of the path name to a directory with restricted access. Exploitation of the vulnerability may allow a remote attacker to disclose protected information.
Recommendations
For Zyxel USG FLEX 100(W) firmware versions 4.50 through 5.30, update to a version outside of this range to resolve the issue.
For Zyxel USG FLEX 200 firmware versions 4.50 through 5.30, update to a version outside of this range to resolve the issue.
For Zyxel USG FLEX 500 firmware versions 4.50 through 5.30, update to a version outside of this range to resolve the issue.
For Zyxel USG FLEX 700 firmware versions 4.50 through 5.30, update to a version outside of this range to resolve the issue.
For Zyxel USG FLEX 50(W) firmware versions 4.16 through 5.30, update to a version outside of this range to resolve the issue.
For Zyxel USG20(W)-VPN firmware versions 4.16 through 5.30, update to a version outside of this range to resolve the issue.
For Zyxel ATP series firmware versions 4.32 through 5.30, update to a version outside of this range to resolve the issue.
For Zyxel VPN series firmware versions 4.30 through 5.30, update to a version outside of this range to resolve the issue.
For Zyxel USG/ZyWALL series firmware versions 4.11 through 4.72, update to a version outside of this range to resolve the issue.
As a temporary workaround, consider restricting access to the vulnerable CGI programs until a patch is available.
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Zyxel Atp Series
Zyxel Usg Flex 100
Zyxel Usg Flex 200
Zyxel Usg Flex 50
Zyxel Usg Flex 500
Zyxel Usg Flex 700
Zyxel Usg/Zywall Series
Zyxel Usg20(W)-Vpn
Zyxel Vpn Series