The post-authentication command injection vulnerability in the Zyxel NAS326 firmware versions prior to V5.21(AAZF.13)C0 could allow an authenticated attacker with administrator privileges to execute some operating system (OS) commands on an affected device remotely.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
EUVD-2023-31713 | The post-authentication command injection vulnerability in the Zyxel NAS326 firmware versions prior to V5.21(AAZF.13)C0 could allow an authenticated attacker with administrator privileges to execute some operating system (OS) commands on an affected device remotely. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 14 Jan 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: Zyxel
Published:
Updated: 2025-01-14T16:26:24.864Z
Reserved: 2023-03-09T00:00:00
Link: CVE-2023-27988

Updated: 2024-08-02T12:23:30.675Z

Status : Modified
Published: 2023-05-30T02:15:33.533
Modified: 2024-11-21T07:53:52.930
Link: CVE-2023-27988

No data.

No data.