Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-29rw-7xhw-cxx2

Опубликовано: 14 янв. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

An improper privilege management vulnerability in the web management interface of the Zyxel WBE530 firmware versions through 7.00(ACLE.3) and WBE660S firmware versions through 6.70(ACGG.2) could allow an authenticated user with limited privileges to escalate their privileges to that of an administrator, enabling them to upload configuration files to a vulnerable device.

An improper privilege management vulnerability in the web management interface of the Zyxel WBE530 firmware versions through 7.00(ACLE.3) and WBE660S firmware versions through 6.70(ACGG.2) could allow an authenticated user with limited privileges to escalate their privileges to that of an administrator, enabling them to upload configuration files to a vulnerable device.

EPSS

Процентиль: 31%
0.00114
Низкий

8.8 High

CVSS3

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 8.8
nvd
7 месяцев назад

An improper privilege management vulnerability in the web management interface of the Zyxel WBE530 firmware versions through 7.00(ACLE.3) and WBE660S firmware versions through 6.70(ACGG.2) could allow an authenticated user with limited privileges to escalate their privileges to that of an administrator, enabling them to upload configuration files to a vulnerable device.

CVSS3: 8.8
fstec
8 месяцев назад

Уязвимость веб-интерфейса управления микропрограммного обеспечения сетевых устройств Zyxel, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 31%
0.00114
Низкий

8.8 High

CVSS3

Дефекты

CWE-269