CVE-2022-30525

GPTKB entity

Statements (16)
Predicate Object
gptkbp:instanceOf gptkb:security
gptkbp:access no
gptkbp:affects gptkb:Zyxel_firewall_devices
gptkbp:describes A command injection vulnerability in the web interface of Zyxel firewall devices allows unauthenticated attackers to execute arbitrary commands.
gptkbp:discoveredBy gptkb:Rapid7
gptkbp:hasCVSSScore 9.8
gptkbp:hasCWE gptkb:CWE-77
https://www.w3.org/2000/01/rdf-schema#label CVE-2022-30525
gptkbp:impact arbitrary code execution
gptkbp:patchedBy Zyxel firmware update
gptkbp:publicationDate 2022-05-12
gptkbp:vectorFor gptkb:network_protocol
gptkbp:vulnerableTo gptkb:CVE-2022-30525
unauthenticated remote command injection
gptkbp:bfsParent gptkb:MHCHAOS
gptkbp:bfsLayer 6