CVE-2019-10630: High severity zyxel nas326 vulnerability
Published Apr 9, 2019
·Updated
A plaintext password vulnerability in the Zyxel NAS 326 through 5.21 allows an elevated privileged user to get the admin password of the device.
Affected Software
2 affected components
Zyxel NAS326<=5.21
Zyxel NAS326
Event History
Apr 9, 2019
CVE Published
via MITRE·04:59 AM
Data Sourced
via MITRE·04:59 AM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this plaintext password vulnerability?
The vulnerability ID for this plaintext password vulnerability is CVE-2019-10630.
2
What is the severity level of CVE-2019-10630?
The severity level of CVE-2019-10630 is high (8.8).
3
How can an elevated privileged user exploit CVE-2019-10630?
An elevated privileged user can exploit CVE-2019-10630 to obtain the admin password of the Zyxel NAS 326 device.
4
Is Zyxel NAS 326 firmware version 5.21 affected by CVE-2019-10630?
Yes, Zyxel NAS 326 firmware version 5.21 is affected by CVE-2019-10630.
5
Is there a fix available for CVE-2019-10630?
Yes, it is recommended to update the Zyxel NAS 326 firmware to a version that is not affected by CVE-2019-10630.