CVE-2022-26413 - CERT CVE
ID CVE-2022-26413
Sažetak A command injection vulnerability in the CGI program of Zyxel VMG3312-T20A firmware version 5.30(ABFX.5)C0 could allow a local authenticated attacker to execute arbitrary OS commands on a vulnerable device via a LAN interface.
Reference
CVSS
Base: 7.7
Impact: 10.0
Exploitability:5.1
Pristup
VektorSloženostAutentikacija
ADJACENT_NETWORK LOW SINGLE
Impact
PovjerljivostCjelovitostDostupnost
COMPLETE COMPLETE COMPLETE
CVSS vektor AV:A/AC:L/Au:S/C:C/I:C/A:C
Zadnje važnije ažuriranje 15-04-2022 - 03:34
Objavljeno 11-04-2022 - 13:15