S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Feb 9, 2024

CVE-2020-29583 Scanner

Targets the ZyXEL USG firmware version 4.60, where hard-coded credentials in the SSH service allow attackers to gain root access.

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
3k
Times Used
continuous scan runs
4.4k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVECVE-2020-29583
9.8
CVSScritical
Exploitable remotely over the internet · no authentication required.

Firmware version 4.60 of Zyxel USG devices contains an undocumented account (zyfwp) with an unchangeable password. The password for this account can be found in cleartext in the firmware. This account can be used by someone to login to the ssh server or web interface with admin privileges.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
n/aby n/a
n/a
Updated Aug 21, 2026View on NVD →
Detail

The ZyXEL Unified Security Gateway (USG) series is a popular network security appliance used by small and medium-sized businesses to provide firewall, VPN, and intrusion detection capabilities. These devices are critical for protecting internal networks from external threats, making their security essential for business operations and data integrity.

CVE-2020-29583 is a critical vulnerability that arises from hard-coded credentials embedded in the firmware of ZyXEL USG devices running version 4.60. This flaw allows attackers to bypass authentication mechanisms and gain unauthorized access to the device. The credentials are static and cannot be changed by administrators, making them a persistent security risk.

Specifically, the vulnerability resides in the SSH service of the ZyXEL USG, where a hard-coded username and password are present. Attackers can use these credentials to log in remotely with root privileges, bypassing standard authentication controls. The affected endpoint is the SSH interface, which is typically exposed to the network for management purposes.

If exploited, an attacker can gain full administrative control over the device, allowing them to intercept network traffic, modify firewall rules, deploy malware, or pivot to other systems within the network. This could lead to data breaches, network compromise, and significant operational disruption, highlighting the severity of the vulnerability with a CVSS score of 9.8.

Solution Advice
  • Immediately update the ZyXEL USG firmware to the latest patched version provided by ZyXEL.
  • Disable remote SSH access if not required, or restrict it to trusted IP addresses only.
  • Implement network segmentation to limit exposure of management interfaces.
  • Use strong, unique passwords for all administrative accounts and change them regularly.
  • Enable multi-factor authentication (MFA) for device management access.
  • Monitor logs for unauthorized access attempts and set up alerts for suspicious activity.
  • Conduct regular vulnerability scans to identify and remediate similar issues.
  • Review and harden device configurations according to security best practices.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.