VYPR
High severity8.8NVD Advisory· Published Nov 10, 2018· Updated Jun 17, 2026

CVE-2017-17550

CVE-2017-17550

Description

ZyXEL ZyWALL USG 2.12 AQQ.2 and 3.30 AQQ.7 devices are affected by a CSRF vulnerability via a cgi-bin/zysh-cgi cmd action to add a user account. This account's access could, for example, subsequently be used for stored XSS.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • Zyxel/ZyWALL USGllm-create
    Range: 2.12 AQQ.2 and 3.30 AQQ.7
  • cpe:2.3:o:zyxel:zywall_usg_100_firmware:2.12\(aqq.2\):*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:zyxel:zywall_usg_100_firmware:2.12\(aqq.2\):*:*:*:*:*:*:*
    • cpe:2.3:o:zyxel:zywall_usg_100_firmware:3.30\(aqq.7\):*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.