Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47455 | **UNSUPPORTED WHEN ASSIGNED** A command injection vulnerability in the export-cgi program of Zyxel NAS326 firmware versions through V5.21(AAZF.18)C0 and NAS542 firmware versions through V5.21(ABAG.15)C0 could allow an unauthenticated attacker to execute some operating system (OS) commands by sending a crafted HTTP POST request. |
Wed, 22 Jan 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zyxel nas326
Zyxel nas542 |
|
| CPEs | cpe:2.3:h:zyxel:nas326:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nas542:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nas326_firmware:5.21\(aazf.18\)c0:-:*:*:*:*:*:* cpe:2.3:o:zyxel:nas542_firmware:5.21\(abag.15\)c0:-:*:*:*:*:*:* |
|
| Vendors & Products |
Zyxel nas326
Zyxel nas542 |
Tue, 10 Sep 2024 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zyxel
Zyxel nas326 Firmware Zyxel nas542 Firmware |
|
| CPEs | cpe:2.3:o:zyxel:nas326_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nas542_firmware:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Zyxel
Zyxel nas326 Firmware Zyxel nas542 Firmware |
|
| Metrics |
ssvc
|
Tue, 10 Sep 2024 02:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | **UNSUPPORTED WHEN ASSIGNED** A command injection vulnerability in the export-cgi program of Zyxel NAS326 firmware versions through V5.21(AAZF.18)C0 and NAS542 firmware versions through V5.21(ABAG.15)C0 could allow an unauthenticated attacker to execute some operating system (OS) commands by sending a crafted HTTP POST request. | |
| Weaknesses | CWE-78 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Zyxel
Published:
Updated: 2024-09-10T15:18:36.873Z
Reserved: 2024-06-26T03:23:34.850Z
Link: CVE-2024-6342
Updated: 2024-09-10T15:18:24.955Z
Status : Analyzed
Published: 2024-09-10T02:15:10.063
Modified: 2025-01-22T22:31:48.667
Link: CVE-2024-6342
No data.
OpenCVE Enrichment
No data.
EUVD