← back
CVE-2019-12583

CVE-2019-12583

30Vexday Risk Score

Patch soon. It has a working public exploit.

ssvc Attendepss 44%
exploitation probability
44%top 1% of all CVEs
observed exploitation
nono source reports it
Missing Access Control in the "Free Time" component of several Zyxel UAG, USG, and ZyWall devices allows a remote attacker to generate guest accounts by directly accessing the account generator. This can lead to unauthorised network access or Denial of Service.
Affected products
n/a · n/a