High severity8.8NVD Advisory· Published Nov 21, 2019· Updated Jun 17, 2026
CVE-2014-8356
CVE-2014-8356
Description
The web administrative portal in Zhone zNID 2426A before S3.0.501 allows remote authenticated users to bypass intended access restrictions via a modified server response, related to an insecure direct object reference.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- Zhone/zNID 2426Adescription
- Range: <S3.0.501
Patches
Vulnerability mechanics
References
3- packetstormsecurity.com/files/133921/Zhone-Insecure-Reference-Password-Disclosure-Command-Injection.htmlnvdExploitThird Party AdvisoryVDB Entry
- seclists.org/fulldisclosure/2015/Oct/57nvdExploitMailing ListThird Party Advisory
- www.exploit-db.com/exploits/38453/nvdExploitThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.