The improper privilege management vulnerability in the Zyxel WBE660S firmware version 6.70(ACGG.3) and earlier versions could allow an authenticated user to escalate privileges and download the configuration files on a vulnerable device.
References
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
AND |
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
Configuration 7 (hide)
AND |
|
Configuration 8 (hide)
AND |
|
Configuration 9 (hide)
AND |
|
Configuration 10 (hide)
AND |
|
Configuration 11 (hide)
AND |
|
Configuration 12 (hide)
AND |
|
Configuration 13 (hide)
AND |
|
Configuration 14 (hide)
AND |
|
Configuration 15 (hide)
AND |
|
Configuration 16 (hide)
AND |
|
Configuration 17 (hide)
AND |
|
Configuration 18 (hide)
AND |
|
Configuration 19 (hide)
AND |
|
Configuration 20 (hide)
AND |
|
History
22 Jan 2025, 22:33
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:h:zyxel:nwa110ax:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wax610d_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wax630s_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nwa50ax-pro:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wac500_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nwa1123acv3_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wac500h_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nwa220ax-6e:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wax650s_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wax620d-6e_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wax650s:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wac500:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wax640s-6e:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wax510d:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nwa210ax_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wax300h_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nwa90ax:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nwa50ax_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nwa55axe_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nwa90ax-pro_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nwa1123acv3:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wax630s:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nwa210ax:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nwa90ax-pro:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nwa220ax-6e_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wax610d:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nwa90ax_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wax655e_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nwa55axe:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wax655e:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wax300h:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wbe660s_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wax510d_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wbe660s:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nwa110ax_firmware:*:*:*:*:*:*:*:* cpe:2.3:o:zyxel:wax640s-6e_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:nwa50ax:-:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wax620d-6e:-:*:*:*:*:*:*:* cpe:2.3:o:zyxel:nwa50ax-pro_firmware:*:*:*:*:*:*:*:* cpe:2.3:h:zyxel:wac500h:-:*:*:*:*:*:*:* |
|
References | () https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-improper-privilege-management-vulnerability-in-aps-07-23-2024 - Vendor Advisory | |
CWE | NVD-CWE-noinfo | |
First Time |
Zyxel wbe660s Firmware
Zyxel wac500h Zyxel nwa220ax-6e Zyxel wax655e Firmware Zyxel wax650s Firmware Zyxel wax610d Zyxel nwa50ax-pro Firmware Zyxel nwa1123acv3 Zyxel wax300h Firmware Zyxel wac500h Firmware Zyxel nwa50ax-pro Zyxel nwa90ax Zyxel wbe660s Zyxel nwa90ax-pro Firmware Zyxel wax510d Zyxel nwa1123acv3 Firmware Zyxel nwa210ax Zyxel wax300h Zyxel nwa210ax Firmware Zyxel nwa220ax-6e Firmware Zyxel nwa110ax Zyxel nwa110ax Firmware Zyxel nwa50ax Zyxel wax640s-6e Zyxel wax650s Zyxel nwa55axe Zyxel nwa90ax-pro Zyxel nwa50ax Firmware Zyxel wax630s Firmware Zyxel nwa55axe Firmware Zyxel wax640s-6e Firmware Zyxel wax620d-6e Firmware Zyxel Zyxel wax630s Zyxel wax655e Zyxel wax510d Firmware Zyxel nwa90ax Firmware Zyxel wac500 Zyxel wac500 Firmware Zyxel wax620d-6e Zyxel wax610d Firmware |
21 Nov 2024, 08:50
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-improper-privilege-management-vulnerability-in-aps-07-23-2024 - |
24 Jul 2024, 12:55
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
23 Jul 2024, 02:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-07-23 02:15
Updated : 2025-01-22 22:33
NVD link : CVE-2024-1575
Mitre link : CVE-2024-1575
CVE.ORG link : CVE-2024-1575
JSON object : View
Products Affected
zyxel
- wac500
- wax650s
- wac500h
- wax300h_firmware
- nwa210ax_firmware
- wax610d_firmware
- wax640s-6e_firmware
- nwa110ax
- wax300h
- nwa1123acv3_firmware
- nwa210ax
- nwa110ax_firmware
- wax630s
- nwa90ax_firmware
- nwa90ax-pro_firmware
- nwa90ax
- nwa220ax-6e
- nwa1123acv3
- nwa220ax-6e_firmware
- wax510d_firmware
- wax655e_firmware
- nwa50ax-pro_firmware
- wax510d
- wax620d-6e
- wax650s_firmware
- nwa55axe_firmware
- wax610d
- wbe660s_firmware
- wax620d-6e_firmware
- wax640s-6e
- wbe660s
- nwa50ax-pro
- nwa90ax-pro
- wac500_firmware
- wax630s_firmware
- nwa55axe
- nwa50ax
- wax655e
- nwa50ax_firmware
- wac500h_firmware
CWE