A post-authentication command injection vulnerability in the NTP feature of Zyxel NBG6604 firmware version V1.01(ABIR.1)C0 could allow an authenticated attacker to execute some OS commands remotely by sending a crafted HTTP request.
2023-08-14T17:15:10.313
2024-11-21T08:04:24.430
Modified
CVSSv3.1: 8.8 (HIGH)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | zyxel | nbg6604_firmware | 1.01\(abir.1\)c0 | Yes |
Hardware | zyxel | nbg6604 | - | No |