A command injection vulnerability in the CGI program of the Zyxel ARMOR Z1/Z2 firmware could allow an attacker to execute arbitrary OS commands via a LAN interface.
2022-02-24T15:15:25.150
2024-11-21T06:36:45.207
Modified
CVSSv3.1: 8.8 (HIGH)
AV:A/AC:L/Au:N/C:C/I:C/A:C
6.5
10.0
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | zyxel | nbg6816_firmware | 1.00\(aawb.10\)c0 | Yes |
Hardware | zyxel | nbg6816 | - | No |
Operating System | zyxel | nbg6817_firmware | < 1.00\(abcs.11\)c0 | Yes |
Hardware | zyxel | nbg6817 | - | No |