{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-05T22:48:55.473","vulnerabilities":[{"cve":{"id":"CVE-2023-27991","sourceIdentifier":"security@zyxel.com.tw","published":"2023-04-24T18:15:09.497","lastModified":"2024-11-21T07:53:53.360","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"The post-authentication command injection vulnerability in the CLI command of Zyxel ATP series firmware versions 4.32 through 5.35, USG FLEX series firmware versions 4.50 through 5.35, USG FLEX 50(W) firmware versions 4.16 through 5.35, USG20(W)-VPN firmware versions 4.16 through 5.35, and VPN series firmware versions 4.30 through 5.35, which could allow an authenticated attacker to execute some OS commands remotely."}],"metrics":{"cvssMetricV31":[{"source":"security@zyxel.com.tw","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":8.8,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.8,"impactScore":5.9},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","baseScore":8.8,"baseSeverity":"HIGH","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.8,"impactScore":5.9}]},"weaknesses":[{"source":"security@zyxel.com.tw","type":"Secondary","description":[{"lang":"en","value":"CWE-78"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-78"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:atp200_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.32","versionEndExcluding":"5.36","matchCriteriaId":"84A41F09-4474-4ABC-B2FA-92B17F63A7CA"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:atp200:-:*:*:*:*:*:*:*","matchCriteriaId":"D68A36FF-8CAF-401C-9F18-94F3A2405CF4"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:atp100_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.32","versionEndExcluding":"5.36","matchCriteriaId":"73E39B94-291E-4E3A-8A89-B74FF063BA05"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:atp100:-:*:*:*:*:*:*:*","matchCriteriaId":"7F7654A1-3806-41C7-82D4-46B0CD7EE53B"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:atp700_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.32","versionEndExcluding":"5.36","matchCriteriaId":"7728D2C4-0B0A-404E-92BC-AAA1A1987BFD"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:atp700:-:*:*:*:*:*:*:*","matchCriteriaId":"0B41F437-855B-4490-8011-DF59887BE6D5"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:atp500_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.32","versionEndExcluding":"5.36","matchCriteriaId":"8B7E5F75-5577-4511-A1F4-1BD142D60BD5"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:atp500:-:*:*:*:*:*:*:*","matchCriteriaId":"2818E8AC-FFEE-4DF9-BF3F-C75166C0E851"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:atp100w_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.32","versionEndExcluding":"5.36","matchCriteriaId":"B8F79940-F737-4A71-9FAC-1F99E0BCE450"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:atp100w:-:*:*:*:*:*:*:*","matchCriteriaId":"47398FD0-6C5E-4625-9EFD-DE08C9AB7DB2"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:atp800_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.32","versionEndExcluding":"5.36","matchCriteriaId":"791D6928-BE82-4678-A8A4-39C9D9A1C684"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:atp800:-:*:*:*:*:*:*:*","matchCriteriaId":"66B99746-0589-46E6-9CBD-F38619AD97DC"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_100_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.36","matchCriteriaId":"FC95F84E-95A0-4FB8-942A-732E022E3CC6"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_100:-:*:*:*:*:*:*:*","matchCriteriaId":"2B30A4C0-9928-46AD-9210-C25656FB43FB"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_50_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.36","matchCriteriaId":"07895A23-2B15-4631-A55A-798B35A63E2D"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_50:-:*:*:*:*:*:*:*","matchCriteriaId":"646C1F07-B553-47B0-953B-DC7DE7FD0F8B"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_200_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.36","matchCriteriaId":"F65ACDFE-3A54-46D6-98CA-2D51957072AF"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_200:-:*:*:*:*:*:*:*","matchCriteriaId":"F93B6A06-2951-46D2-A7E1-103D7318D612"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_500_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.36","matchCriteriaId":"C0B8FF81-5020-429E-ABC7-D0F18A5177F5"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_500:-:*:*:*:*:*:*:*","matchCriteriaId":"92C697A5-D1D3-4FF0-9C43-D27B18181958"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_700_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.36","matchCriteriaId":"FD0F817C-6388-41E2-9F80-9B5427036865"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_700:-:*:*:*:*:*:*:*","matchCriteriaId":"9D1396E3-731B-4D05-A3F8-F3ABB80D5C29"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_100w_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.36","matchCriteriaId":"7D65F0EC-7ACA-4B80-8D4E-2C1459837D15"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_100w:-:*:*:*:*:*:*:*","matchCriteriaId":"D74ABA7E-AA78-4A13-A64E-C44021591B42"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_20w-vpn_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.16","versionEndExcluding":"5.36","matchCriteriaId":"224300FB-2462-4E88-A41E-E9E8EAE9CF48"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_20w-vpn:-:*:*:*:*:*:*:*","matchCriteriaId":"6BEA412F-3DA1-4E91-9C74-0666147DABCE"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_50w_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.16","versionEndExcluding":"5.36","matchCriteriaId":"F61480ED-BBF0-49EC-A814-CEFDE1FBFA08"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_50w:-:*:*:*:*:*:*:*","matchCriteriaId":"110A1CA4-0170-4834-8281-0A3E14FC5584"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg20-vpn_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.30","versionEndExcluding":"5.36","matchCriteriaId":"7079103C-ED92-40C3-AF42-4689822A96E2"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg20-vpn:-:*:*:*:*:*:*:*","matchCriteriaId":"7239C54F-EC9E-44B4-AE33-1D36E5448219"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:vpn100_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.30","versionEndExcluding":"5.36","matchCriteriaId":"FB329984-D2A1-40B4-826D-78643B8DD4C8"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:vpn100:-:*:*:*:*:*:*:*","matchCriteriaId":"81D90A7B-174F-40A1-8AF4-08B15B7BAC40"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:vpn1000_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.30","versionEndExcluding":"5.36","matchCriteriaId":"5DB62871-BC40-43D8-A486-471CD9316332"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:vpn1000:-:*:*:*:*:*:*:*","matchCriteriaId":"EECD311A-4E96-4576-AADF-47291EDE3559"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:vpn300_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.30","versionEndExcluding":"5.36","matchCriteriaId":"D0135FFF-62FA-4AEA-8B67-1CCA2D85D8E0"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:vpn300:-:*:*:*:*:*:*:*","matchCriteriaId":"3C45C303-1A95-4245-B242-3AB9B9106CD4"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:vpn50_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.30","versionEndExcluding":"5.36","matchCriteriaId":"B01FA34A-CA33-48E7-978C-638FC678C9C1"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:vpn50:-:*:*:*:*:*:*:*","matchCriteriaId":"9E3AC823-0ECA-42D8-8312-2FBE5914E4C0"}]}]}],"references":[{"url":"https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-xss-vulnerability-and-post-authentication-command-injection-vulnerability-in-firewalls","source":"security@zyxel.com.tw","tags":["Vendor Advisory"]},{"url":"https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-xss-vulnerability-and-post-authentication-command-injection-vulnerability-in-firewalls","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}