Sploitus

Exploit for OS Command Injection in Zyxel Usg_Flex_100W_Firmware

githubexploit · 2022-05-13

Exploit Code

README28 lines
## https://sploitus.com/exploit?id=85E31D02-8EDA-5C9D-BF05-D41E04B2F6A6
# CVE-2022-30525  
Zyxel firewall: Unauthenticated remote command injection  

## Affected Versions  

### Affected Components  

USG FLEX 100, 100W, 200, 500, 700  
USG20-VPN, USG20W-VPN  
ATP 100, 200, 500, 700, 800  

### Firmware Versions  

ZLD5.00 through ZLD5.21 Patch 1  
ZLD5.10 through ZLD5.21 Patch 1  
ZLD5.10 through ZLD5.21 Patch 1  

## Updates  

-Proxy  

## Source  
https://github.com/Henry4E36/CVE-2022-30525  

# ⚠️ Disclaimer  

This tool is used solely for cybersecurity research and discussion purposes. Please use it in a reasonable manner in accordance with network security laws! If users engage in illegal activities using this tool, it is not related to this author.