← Back to CVE List

CVE-2024-29976

Published: 2024-06-04T02:15Z
Last Modified: 2025-01-22T22:49Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
** UNSUPPORTED WHEN ASSIGNED ** The improper privilege management vulnerability in the command “show_allsessions” in Zyxel NAS326 firmware versions before V5.21(AAZF.17)C0 and NAS542 firmware versions before V5.21(ABAG.14)C0 could allow an authenticated attacker to obtain a logged-in administrator’s session information containing cookies on an affected device. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt