🚨CVE-2024-29973: Unauthorized command injection in Zyxel NAS devices!
👉This command injection vulnerability in the “setCookie” parameter in Zyxel NAS326 and NAS542 devices could allow an unauthenticated attacker to execute some OS commands by sending a crafted HTTP POST request.
💥PoC: https://lnkd.in/gKAJb2Ta
💥Dorks:
Hunter: product.name="ZyXEL NAS542"||http://product.name="ZyXEL NAS326"
FOFA: app="NAS542" || app="ZYXEL-NAS326"
SHODAN: http.title:"Zyxel NAS326"
.
.
.
hashtag#cybersecurity hashtag#cybersecurityawareness hashtag#security hashtag#informationsecurity hashtag#hacker hashtag#datasecurity hashtag#hacking hashtag#threat hashtag#infosecurity hashtag#technology hashtag#cloud hashtag#hacks hashtag#computerscience hashtag#informationtechnology hashtag#social hashtag#tech hashtag#hacked hashtag#android hashtag#awscloud hashtag#aws