cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2022-2030,https://securityvulnerability.io/vulnerability/CVE-2022-2030,Directory Traversal Vulnerability in Zyxel USG FLEX and VPN Series Products,"A directory traversal vulnerability in Zyxel's firewall CGI programs allows an authenticated attacker to exploit improper sanitization of specific character sequences in URLs, potentially granting access to sensitive files restricted from general access. This flaw affects a range of Zyxel USG FLEX devices and VPN series firmware, necessitating prompt attention and remediation to protect against unauthorized file access.",Zyxel,"Usg Flex 100(w) Firmware,Usg Flex 200 Firmware,Usg Flex 500 Firmware,Usg Flex 700 Firmware,Atp Series Firmware,Vpn Series Firmware,Usg Flex 50(w) Firmware,Usg 20(w)-vpn Firmware,Usg/zywall Series Firmware",6.5,MEDIUM,0.0009299999801442027,false,,false,false,false,,,false,false,,2022-07-19T05:55:11.000Z,0 CVE-2022-30526,https://securityvulnerability.io/vulnerability/CVE-2022-30526,Privilege Escalation Vulnerability in Zyxel Firewall Products,"A privilege escalation vulnerability exists within the CLI command of specific Zyxel firewall products. This security flaw allows local attackers to execute operating system commands with elevated privileges in certain directories on affected devices. The vulnerability affects multiple firmware versions across the USG FLEX and VPN series, potentially leading to unauthorized access and control over system functionalities.",Zyxel,"Usg Flex 100(w) Firmware,Usg Flex 200 Firmware,Usg Flex 500 Firmware,Usg Flex 700 Firmware,Atp Series Firmware,Vpn Series Firmware,Usg Flex 50(w) Firmware,Usg 20(w)-vpn Firmware,Usg/zywall Series Firmware",7.8,HIGH,0.001180000021122396,false,,false,false,true,2022-09-01T07:15:09.000Z,true,false,false,,2022-07-19T05:45:14.000Z,0 CVE-2022-30525,https://securityvulnerability.io/vulnerability/CVE-2022-30525,OS Command Injection Vulnerability in Zyxel USG FLEX Firewall,"A vulnerability in the CGI program of Zyxel USG FLEX firewalls could allow an attacker to execute arbitrary OS commands and modify files on vulnerable devices, potentially compromising their security. This issue affects multiple firmware versions across various Zyxel USG FLEX models, necessitating immediate review and updates to mitigate risks.",Zyxel,"Usg Flex 100(w) Firmware,Usg Flex 200 Firmware,Usg Flex 500 Firmware,Usg Flex 700 Firmware,Atp Series Firmware,Vpn Series Firmware,Usg Flex 50(w) Firmware,Usg 20(w)-vpn Firmware",9.8,CRITICAL,0.9736800193786621,true,2022-05-16T00:00:00.000Z,false,false,true,2022-05-16T00:00:00.000Z,true,false,false,,2022-05-12T13:05:11.000Z,0