CVE-2024-6342 - Zyxel NAS Export-CGI Command Injection Vulnerability

2 months ago 28
ARTICLE AD BOX
CVE ID : CVE-2024-6342
Published : Sept. 10, 2024, 2:15 a.m. | 24 minutes ago
Description : **UNSUPPORTED WHEN ASSIGNED** A command injection vulnerability in the export-cgi program of Zyxel NAS326 firmware versions through V5.21(AAZF.18)C0 and NAS542 firmware versions through V5.21(ABAG.15)C0 could allow an unauthenticated attacker to execute some operating system (OS) commands by sending a crafted HTTP POST request.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
Read Entire Article