CVE-2024-40891 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

**UNSUPPORTED WHEN ASSIGNED** A post-authentication command injection vulnerability in the management commands of the legacy DSL CPE Zyxel VMG4325-B10A firmware…
High KEV CVSS: 8.8

CVE-2024-40891

**UNSUPPORTED WHEN ASSIGNED**
A post-authentication command injection vulnerability in the management commands of the legacy DSL CPE Zyxel VMG4325-B10A firmware version 1.00(AAFR.4)C0_20170615 could allow an authenticated attacker to execute operating system (OS) commands on an affected device via Telnet.
Vendor
Zyxel
Product
Vmg1312-b10a Firmware
CWE
CWE-78
Yayın Tarihi
2025-02-04 10:15:08
Güncelleme
2025-10-27 17:04:37
Source Identifier
security@zyxel.com.tw
KEV Date Added
2025-02-11

Kategoriler

Referanslar