7.7
CVSSv2

CVE-2022-26413

Published: 11/04/2022 Updated: 15/04/2022
CVSS v2 Base Score: 7.7 | Impact Score: 10 | Exploitability Score: 5.1
CVSS v3 Base Score: 8 | Impact Score: 5.9 | Exploitability Score: 2.1
VMScore: 685
Vector: AV:A/AC:L/Au:S/C:C/I:C/A:C

Vulnerability Summary

A command injection vulnerability in the CGI program of Zyxel VMG3312-T20A firmware version 5.30(ABFX.5)C0 could allow a local authenticated malicious user to execute arbitrary OS commands on a vulnerable device via a LAN interface.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zyxel vmg3312-t20a_firmware 5.30\\(abfx.5\\)c0

zyxel emg3525-t50b_firmware

zyxel emg5523-t50b_firmware

zyxel emg5723-t50k_firmware

zyxel emg6726-b10a_firmware

zyxel vmg1312-t20b_firmware

zyxel vmg3625-t50b_firmware

zyxel vmg3927-b50a_firmware

zyxel vmg3927-b50b_firmware

zyxel vmg3927-b60a_firmware

zyxel vmg3927-t50k_firmware

zyxel vmg4927-b50a_firmware

zyxel vmg8623-t50b_firmware

zyxel vmg8825-b50a_firmware

zyxel vmg8825-b50b_firmware

zyxel vmg8825-t50k_firmware

zyxel vmg8825-b60a_firmware

zyxel vmg8825-b60b_firmware

zyxel xmg3927-b50a_firmware

zyxel xmg8825-b50a_firmware

zyxel dx5401-b0_firmware

zyxel ex3510-b0_firmware

zyxel ex5401-b0_firmware

zyxel ex5501-b0_firmware

zyxel ax7501-b0_firmware

zyxel ep240p_firmware

zyxel pm7300-t0_firmware

zyxel pmg5317-t20b_firmware

zyxel pmg5617ga_firmware

zyxel pmg5617-t20b2_firmware

zyxel pmg5622ga_firmware

zyxel px7501-b0_firmware