ZeroHour

CVE-2026-24345

CVSS 4.0
6.8 medium
EPSS
<1%p4
Published
()
Modified
Description

Cross-Site Request Forgery in Admin UI of EZCast Pro II version 1.17478.146 allows attackers to bypass authorization checks and gain full access to the admin UI

Vendors
nimbletech
Products
ezcast pro dongle ii firmware
Weakness
CWE-20, CWE-352
Vector
CVSS:4.0/AV:A/AC:L/AT:N/PR:H/UI:A/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:Y/R:X/V:X/RE:L/U:X

In the news

No ingested article mentions this CVE yet.