CVE-2026-14818
7.2
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Summary
A path traversal vulnerability in the CLI command used to execute configuration files in Zyxel ATP series firmware versions from V4.32 through V5.42 Patch 1, USG FLEX series firmware versions from V4.50 through V5.42 Patch 1, USG FLEX 50(W) series firmware versions from V4.16 through V5.42 Patch 1, and USG20(W)-VPN series firmware versions from V4.16 through V5.42 Patch 1 could allow an authenticated attacker with administrator privileges to execute a crafted malicious configuration file on an affected device.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Zyxel | ATP series firmware | from V4.32 through V5.42 Patch 1 | affected |
| Zyxel | USG FLEX series firmware | from V4.50 through V5.42 Patch 1 | affected |
| Zyxel | USG FLEX 50(W) series firmware | from V4.16 through V5.42 Patch 1 | affected |
| Zyxel | USG20(W)-VPN series firmware | from V4.16 through V5.42 Patch 1 | affected |
Weaknesses
- CWE-22: CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
ADP Enrichment
CISA ADP Vulnrichment
- SSVC:
- Exploitation: none
- Automatable: no
- Technical Impact: total
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.