CVE-2024-29976

CVSS V2 None CVSS V3 None
Description
** UNSUPPORTED WHEN ASSIGNED ** The improper privilege management vulnerability in the command “show_allsessions” in Zyxel NAS326 firmware versions before V5.21(AAZF.17)C0 and NAS542 firmware versions before V5.21(ABAG.14)C0 could allow an authenticated attacker to obtain a logged-in administrator’s session information containing cookies on an affected device.
Overview
  • CVE ID
  • CVE-2024-29976
  • Assigner
  • Zyxel
  • Vulnerability Status
  • PUBLISHED
  • Published Version
  • 2024-06-04T01:47:09.211Z
  • Last Modified Date
  • 2024-06-06T15:45:01.336Z
History
Created Old Value New Value Data Type Notes
2024-06-26 02:47:27 Added to TrackCVE