A post-authentication command injection vulnerability in the "export-cgi" CGI program in Zyxel WAX650S firmware versions through 7.10(ABRM.4)C0 could allow an authenticated attacker with administrator privileges to execute OS commands on an affected device.
| Vendor | Product | Versions |
|---|---|---|
| zyxel | wax650s firmware | <= 7.10(ABRM.4)C0 |