ZeroHour

CVE-2018-14893

PoC
CVSS 3.0
8.8 high
EPSS
3%p88
Published
()
Modified
Description

A system command injection vulnerability in zyshclient in ZyXEL NSA325 V2 version 4.81 allows attackers to execute system commands via the web application API.

Vendors
zyxel
Products
nsa325 v2 firmware
Weakness
CWE-77, CWE-78
Vector
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.