Description
The insufficiently protected credentials vulnerability in the CLI command of the USG FLEX H series uOS firmware version V1.21 and earlier versions could allow an authenticated local attacker to gain privilege escalation by stealing the authentication token of a login administrator. Note that this attack could be successful only if the administrator has not logged out.
Published: 2024-10-22
Score: 5.5 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

No analysis available yet.

Remediation

No remediation available yet.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2024-50086 The insufficiently protected credentials vulnerability in the CLI command of the USG FLEX H series uOS firmware version V1.21 and earlier versions could allow an authenticated local attacker to gain privilege escalation by stealing the authentication token of a login administrator. Note that this attack could be successful only if the administrator has not logged out.
History

Thu, 05 Dec 2024 22:30:00 +0000

Type Values Removed Values Added
First Time appeared Zyxel uos
Zyxel usg Flex 100h
Zyxel usg Flex 200h
Zyxel usg Flex 200hp
Zyxel usg Flex 500h
Zyxel usg Flex 700h
CPEs cpe:2.3:h:zyxel:usg_flex_100h:-:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:usg_flex_200h:-:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:usg_flex_200hp:-:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:usg_flex_500h:-:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:usg_flex_700h:-:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:uos:*:*:*:*:*:*:*:*
Vendors & Products Zyxel uos
Zyxel usg Flex 100h
Zyxel usg Flex 200h
Zyxel usg Flex 200hp
Zyxel usg Flex 500h
Zyxel usg Flex 700h

Tue, 22 Oct 2024 16:15:00 +0000

Type Values Removed Values Added
First Time appeared Zyxel
Zyxel usg Flex 100h Firmware
Zyxel usg Flex 100hp Firmware
Zyxel usg Flex 200h Firmware
Zyxel usg Flex 200hp Firmware
Zyxel usg Flex 500h Firmware
Zyxel usg Flex 700h Firmware
CPEs cpe:2.3:o:zyxel:usg_flex_100h_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:usg_flex_100hp_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:usg_flex_200h_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:usg_flex_200hp_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:usg_flex_500h_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:zyxel:usg_flex_700h_firmware:*:*:*:*:*:*:*:*
Vendors & Products Zyxel
Zyxel usg Flex 100h Firmware
Zyxel usg Flex 100hp Firmware
Zyxel usg Flex 200h Firmware
Zyxel usg Flex 200hp Firmware
Zyxel usg Flex 500h Firmware
Zyxel usg Flex 700h Firmware
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Tue, 22 Oct 2024 01:45:00 +0000

Type Values Removed Values Added
Description The insufficiently protected credentials vulnerability in the CLI command of the USG FLEX H series uOS firmware version V1.21 and earlier versions could allow an authenticated local attacker to gain privilege escalation by stealing the authentication token of a login administrator. Note that this attack could be successful only if the administrator has not logged out.
Weaknesses CWE-522
References
Metrics cvssV3_1

{'score': 5.5, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N'}


Subscriptions

Zyxel Uos Usg Flex 100h Usg Flex 100h Firmware Usg Flex 100hp Firmware Usg Flex 200h Usg Flex 200h Firmware Usg Flex 200hp Usg Flex 200hp Firmware Usg Flex 500h Usg Flex 500h Firmware Usg Flex 700h Usg Flex 700h Firmware
cve-icon MITRE

Status: PUBLISHED

Assigner: Zyxel

Published:

Updated: 2024-10-22T15:52:56.281Z

Reserved: 2024-10-09T05:14:46.238Z

Link: CVE-2024-9677

cve-icon Vulnrichment

Updated: 2024-10-22T15:52:50.342Z

cve-icon NVD

Status : Analyzed

Published: 2024-10-22T02:15:04.380

Modified: 2024-12-05T22:11:15.217

Link: CVE-2024-9677

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses