Skip to content
VulniPulse

Zyxel Firewalls (USG FLEX/ATP) Vulnerabilities & Security Advisories

2 advisories tracked · Zyxel Security Advisories via NVD · 1 listed in the CISA Known Exploited Vulnerabilities catalog

Every row below is a published Zyxel advisory that VulniPulse classified as Firewalls (USG FLEX/ATP), with the CVEs, affected and fixed releases and exploitation status the vendor stated. Severity mix: 2 high.

Android app · Google Play

Monitor Zyxel CVEs from your phone.

Choose a whole vendor or a precise platform, then receive matching security advisories by phone notification, email, or both. Coverage follows 34 official vendor sources and 160+ reviewed platform categories.

Source

Zyxel Security Advisories via NVD

Zyxel runs its own CNA (security@zyxel.com.tw), but a large share of Zyxel CVEs are assigned by MITRE and third-party researchers — so VulniPulse ingests them from NVD by keyword (which covers more than the CNA feed alone), requiring a Zyxel product in the description, and links back to the zyxel.com security advisory when referenced. Covers the USG FLEX / ATP / VPN firewalls, Nebula-managed access points, the GS-series switches and the VMG/EMG gateways — an SMB fleet that is a chronic KEV / actively-exploited target.

Latest Zyxel Firewalls (USG FLEX/ATP) advisories

High7.2Zyxel

High [CVE-2026-14818] path traversal vulnerability in the CLI command used to execute configuration files in Zyxel ATP series firmware versions from V4.32 through V5.42 Patch 1, USG FLEX series firmware versions from V4.50 through V5.42 Patch 1, USG FLEX 50(W) series firmware versions from V4.16 through V5.42 Patch 1, and USG20(W)-VPN series firmware versions from V4.16 through V5.42 Patch 1 could allow an authenticated attacker with administrator privileges to execute a crafted malicious configuration file on an affected device

A path traversal vulnerability in the CLI command used to execute configuration files in Zyxel ATP series firmware versions from V4.32 through V5.42 Patch 1, USG FLEX series firmware versions from V4.50 through V5.42 Patch 1, USG FLEX 50(W) series firmware versions from V4.16 through V5.42 Patch 1, and USG20(W)-VPN series firmware versions from V4.16 through V5.42 Patch 1 could allow an authenticated attacker with administrator privileges to execute a crafted malicious configuration file on an affected device.

CVE-2026-14818
Firewalls (USG FLEX/ATP)
Aug 4, 2026
High7.5Zyxel Exploited CISA KEV

High [CVE-2024-11667] directory traversal vulnerability in the web management interface of Zyxel ATP series firmware versions V5.00 through V5.38, USG FLEX series firmware versions V5.00 through V5.38, USG FLEX 50(W) series firmware versions V5.10 through V5.38, and USG20(W)-VPN series firmware versions V5.10 through V5.38 could allow an attacker to download or upload files via a crafted URL

A directory traversal vulnerability in the web management interface of Zyxel ATP series firmware versions V5.00 through V5.38, USG FLEX series firmware versions V5.00 through V5.38, USG FLEX 50(W) series firmware versions V5.10 through V5.38, and USG20(W)-VPN series firmware versions V5.10 through V5.38 could allow an attacker to download or upload files via a crafted URL.

CVE-2024-11667
Firewalls (USG FLEX/ATP)
Nov 27, 2024

← All Zyxel advisories