AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-12398

HIGH · CVSS 8.8 EPSS 0.53%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2025-01-14 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 8.8. Exploitation may require the attacker to be authenticated.

CVE
CVE-2024-12398
Severity
HIGH
CVSS
8.8
EPSS
0.53%

Original NVD Description

An improper privilege management vulnerability in the web management interface of the Zyxel WBE530 firmware versions through 7.00(ACLE.3) and WBE660S firmware versions through 6.70(ACGG.2) could allow an authenticated user with limited privileges to escalate their privileges to that of an administrator, enabling them to upload configuration files to a vulnerable device.

Related CVEs

Other vulnerabilities affecting the same vendor(s)