{"resultsPerPage":1,"startIndex":0,"totalResults":1,"format":"NVD_CVE","version":"2.0","timestamp":"2026-05-08T13:30:38.360","vulnerabilities":[{"cve":{"id":"CVE-2023-34139","sourceIdentifier":"security@zyxel.com.tw","published":"2023-07-17T18:15:09.607","lastModified":"2024-11-21T08:06:37.840","vulnStatus":"Modified","cveTags":[],"descriptions":[{"lang":"en","value":"A command injection vulnerability in the Free Time WiFi hotspot feature of the Zyxel USG FLEX series firmware versions 4.50 through 5.36 Patch 2 and VPN series firmware versions 4.20 through 5.36 Patch 2, could allow an unauthenticated, LAN-based attacker to execute some OS commands on an affected device."}],"metrics":{"cvssMetricV31":[{"source":"security@zyxel.com.tw","type":"Secondary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":8.8,"baseSeverity":"HIGH","attackVector":"ADJACENT_NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.8,"impactScore":5.9},{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":8.8,"baseSeverity":"HIGH","attackVector":"ADJACENT_NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":2.8,"impactScore":5.9}]},"weaknesses":[{"source":"security@zyxel.com.tw","type":"Secondary","description":[{"lang":"en","value":"CWE-78"}]},{"source":"nvd@nist.gov","type":"Primary","description":[{"lang":"en","value":"CWE-78"}]}],"configurations":[{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_2200-vpn_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.20","versionEndExcluding":"5.37","matchCriteriaId":"48A4A637-C466-4F24-AAA6-CE57AF2EF1A4"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_2200-vpn:-:*:*:*:*:*:*:*","matchCriteriaId":"32F7F370-C585-45FE-A7F7-40BFF13928CF"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_100_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.37","matchCriteriaId":"0D66CA5F-C85F-4D69-8F82-BDCF6FCB905C"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_100:-:*:*:*:*:*:*:*","matchCriteriaId":"2B30A4C0-9928-46AD-9210-C25656FB43FB"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_100w_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.37","matchCriteriaId":"E5E31FC3-E2EC-4909-BF8D-86775AF4D4B5"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_100w:-:*:*:*:*:*:*:*","matchCriteriaId":"D74ABA7E-AA78-4A13-A64E-C44021591B42"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_200_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.37","matchCriteriaId":"D6EF9AA9-65D5-4D7B-A2BF-9150C6339282"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_200:-:*:*:*:*:*:*:*","matchCriteriaId":"F93B6A06-2951-46D2-A7E1-103D7318D612"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_50_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.37","matchCriteriaId":"16DE9EA8-98AB-4EAA-AA98-122F64F8D4D2"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_50:-:*:*:*:*:*:*:*","matchCriteriaId":"646C1F07-B553-47B0-953B-DC7DE7FD0F8B"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_500_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.37","matchCriteriaId":"B221F5CD-C0C6-4917-AC15-FF1BA3904915"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_500:-:*:*:*:*:*:*:*","matchCriteriaId":"92C697A5-D1D3-4FF0-9C43-D27B18181958"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_50w_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.37","matchCriteriaId":"338384D8-1585-4AA7-90FB-E56F641E5A14"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_50w:-:*:*:*:*:*:*:*","matchCriteriaId":"110A1CA4-0170-4834-8281-0A3E14FC5584"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:usg_flex_700_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.50","versionEndExcluding":"5.37","matchCriteriaId":"0FA43EB7-3F72-4250-BE9A-7449B8AEF90F"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:usg_flex_700:-:*:*:*:*:*:*:*","matchCriteriaId":"9D1396E3-731B-4D05-A3F8-F3ABB80D5C29"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:zywall_vpn100_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.20","versionEndExcluding":"5.37","matchCriteriaId":"241523CE-2712-4840-A672-E87564B40DE1"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:zywall_vpn100:-:*:*:*:*:*:*:*","matchCriteriaId":"6762B13C-6FD5-49D7-B2D6-4986BAC3D425"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:zywall_vpn2s_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.20","versionEndExcluding":"5.37","matchCriteriaId":"39AE79D4-ABE1-4FAF-9A15-942AF05B6749"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:zywall_vpn2s:-:*:*:*:*:*:*:*","matchCriteriaId":"3D3F001A-8790-463F-804B-CA5CAC610867"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:zywall_vpn300_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.20","versionEndExcluding":"5.37","matchCriteriaId":"2C429AFE-477E-4243-BAE8-2AB17BB5D9D8"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:zywall_vpn300:-:*:*:*:*:*:*:*","matchCriteriaId":"E7C35A94-304B-46FB-BAA0-4E0C4F34BEDD"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:zywall_vpn50_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.20","versionEndExcluding":"5.37","matchCriteriaId":"7FC97DF9-7A02-4DA8-AA9F-0D4CE826E224"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:zywall_vpn50:-:*:*:*:*:*:*:*","matchCriteriaId":"D902D9D2-5215-4A70-9D16-F1C3BA10EE18"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:zywall_vpn_100_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.20","versionEndExcluding":"5.37","matchCriteriaId":"8FD857E4-B5C7-416B-AF9D-9E8A772E227E"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:zywall_vpn_100:-:*:*:*:*:*:*:*","matchCriteriaId":"B1B81DDA-DDD5-4D9B-B631-815186E3839F"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:zywall_vpn_300_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.20","versionEndExcluding":"5.37","matchCriteriaId":"4894CE6D-BE11-4249-830C-E10141C83D05"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:zywall_vpn_300:-:*:*:*:*:*:*:*","matchCriteriaId":"212C5E8E-774A-446E-B7C7-80C349160BC2"}]}]},{"operator":"AND","nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:zyxel:zywall_vpn_50_firmware:*:*:*:*:*:*:*:*","versionStartIncluding":"4.20","versionEndExcluding":"5.37","matchCriteriaId":"B5107841-343E-4776-9F84-90C13BBB736E"}]},{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":false,"criteria":"cpe:2.3:h:zyxel:zywall_vpn_50:-:*:*:*:*:*:*:*","matchCriteriaId":"FD872CA4-385D-49A9-B1DF-7C4467BD49AA"}]}]}],"references":[{"url":"https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-multiple-vulnerabilities-in-firewalls-and-wlan-controllers","source":"security@zyxel.com.tw","tags":["Vendor Advisory"]},{"url":"https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-multiple-vulnerabilities-in-firewalls-and-wlan-controllers","source":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"]}]}}]}