Vulnerability Details CVE-2024-8234
                ** UNSUPPORTED WHEN ASSIGNED ** A command injection vulnerability in the functions formSysCmd(), formUpgradeCert(), and formDelcert() in the Zyxel NWA1100-N firmware version 1.00(AACE.1)C0 could allow an unauthenticated attacker to execute some OS commands to access system files on an affected device.
                
                    Exploit prediction scoring system (EPSS) score
                    
                        
                            EPSS Score 0.043
                        
                    
                    
                        
                            EPSS Ranking 88.4%
                        
                    
                 
                
                    CVSS Severity
                    
                        
                            CVSS v3 Score 7.5
                        
                    
                    
                 
                
                
                
                    
                
                
                    
                        Products affected by CVE-2024-8234
                        
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:h:zyxel:nwaw1100-n:-
                                        
                                     
                                 
                            
                                
                                - 
                                    
                                    
                                        
                                            cpe:2.3:o:zyxel:nwaw1100-n_firmware:1.00(aace.1)c0