Source |
The Hacker News |
Identifiant |
4589549 |
Date de publication |
2022-05-12 23:24:37 (vue: 2022-05-13 07:05:57) |
Titre |
Zyxel Releases Patch for Critical Firewall OS Command Injection Vulnerability |
Texte |
Zyxel has moved to address a critical security vulnerability affecting Zyxel firewall devices that enables unauthenticated and remote attackers to gain arbitrary code execution.
"A command injection vulnerability in the CGI program of some firewall versions could allow an attacker to modify specific files and then execute some OS commands on a vulnerable device," the company said in an advisory |
Notes |
★★★
|
Envoyé |
Oui |
Condensat |
address advisory affecting allow arbitrary attacker attackers cgi code command commands company said in could critical device devices enables execute execution files firewall gain has injection modify moved patch program releases remote security some specific then unauthenticated versions vulnerability vulnerable zyxel |
Tags |
Vulnerability
|
Stories |
|
Move |
|