PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVE

CVE-2022-30525

9.8
CVSScritical
Exploitable remotely over the internet · no authentication required.
Description

A OS command injection vulnerability in the CGI program of Zyxel USG FLEX 100(W) firmware versions 5.00 through 5.21 Patch 1, USG FLEX 200 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 500 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 700 firmware versions 5.00 through 5.21 Patch 1, USG FLEX 50(W) firmware versions 5.10 through 5.21 Patch 1, USG20(W)-VPN firmware versions 5.10 through 5.21 Patch 1, ATP series firmware versions 5.10 through 5.21 Patch 1, VPN series firmware versions 4.60 through 5.21 Patch 1, which could allow an attacker to modify specific files and then execute some OS commands on a vulnerable device.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
usg flex 100(w) firmwareusg flex 200 firmwareusg flex 500 firmwareusg flex 700 firmwareatp series firmwarevpn series firmware
Updated Sep 18, 2026View on NVD →
S4E scanner

CVE-2022-30525 Scanner

CVE-2022-30525 scanner - Command Injection vulnerability in Zyxel USG FLEX 100(W), USG FLEX 200, USG FLEX 500, USG FLEX 700, USG FLEX 50(W), USG20(W)-VPN, ATP series, VPN series

Used 2.8k times · 5.9k assets checked · domain, ipv4, subdomain

CVE history: usg flex 100(w) firmware

Predict next CVE date with AI

Monitor this CVE on your assets

S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.

Create a free account →