Security Advisory

CVE-2022-43390

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2023-01-11 00:00:00
Last updated 2025-04-08 20:16:36
Assigner Zyxel
CVSS score 5.4
State PUBLISHED

Description

A command injection vulnerability in the CGI program of Zyxel NR7101 firmware prior to V1.15(ACCC.3)C0, which could allow an authenticated attacker to execute some OS commands on a vulnerable device by sending a crafted HTTP request.