zyxel-sa-2024-001

CRITICAL CVSS 9.8 csaf_zyxel
Description

Zyxel firewalls contain a command injection vulnerability in the management interface.

Timeline
Published
2024-04-25 14:00 UTC
Last Modified
2024-05-01
CVSS Details

CVSS details not available.

Affected Products

No product information available.

CVSS metrics
Version Base Severity Vector Exploitability Impact Source
3.1 9.8 CRITICAL
References

No references available.

Linked Vulnerabilities

No linked vulnerabilities found.

{
  "cvss": 9.8,
  "datePublished": "2024-04-25T14:00:00Z",
  "dateUpdated": "2024-05-01T18:00:00Z",
  "description": "Zyxel firewalls contain a command injection vulnerability in the management interface.",
  "id": "ZYXEL-SA-2024-001",
  "metrics": {
    "cvssMetricV31": [
      {
        "cvssData": {
          "baseScore": 9.8,
          "baseSeverity": "CRITICAL",
          "version": "3.1"
        }
      }
    ]
  },
  "severity": "CRITICAL",
  "source": "csaf_zyxel",
  "title": "Zyxel: Firewall Command Injection"
}
View JSON API Download JSON