CVE-2024-8234: Zyxel NWAW1100-N Firmware
Critical severity, CVSS 9.8. EPSS: 4.4% chance of exploitation in the next 30 days.
** UNSUPPORTED WHEN ASSIGNED ** A command injection vulnerability in the functions formSysCmd(), formUpgradeCert(), and formDelcert() in the Zyxel NWA1100-N firmware version 1.00(AACE.1)C0 could allow an unauthenticated attacker to execute some OS commands to access system files on an affected device.
Affected products
- Zyxel NWAW1100-N Firmware: version 1.00(aace.1)c0 only
Published 2024-08-30. Last modified 2026-06-17.