logo
Vulnerability feed
CONTRIBUTE

Vulnerability

warn

CVE-2024-29976

Reference to the description:

https://nvd.nist.gov/vuln/detail/CVE-2024-29976

Description:
** UNSUPPORTED WHEN ASSIGNED ** The improper privilege management vulnerability in the command “show_allsessions” in Zyxel NAS326 firmware versions before V5.21(AAZF.17)C0 and NAS542 firmware versions before V5.21(ABAG.14)C0 could allow an authenticated attacker to obtain a logged-in administrator’s session information containing cookies on an affected device.
Last updated date:
01/22/2025
Type:
exploit
Confidence:
HIGH
Date of publishing:
01/22/2025
Reference url to background

https://outpost24.com/blog/zyxel-nas-critical-vulnerabilities/

Vulnerability FeedContributorsAboutBlog

@inTheWild

©2025

Privacy Policy