Description
A vulnerability was found in the CGI program in Zyxel GS1900-8 firmware version V2.60, that did not properly sterilize packet contents and could allow an authenticated, local user to perform a cross-site scripting (XSS) attack via a crafted LLDP packet.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-21677 | A vulnerability was found in the CGI program in Zyxel GS1900-8 firmware version V2.60, that did not properly sterilize packet contents and could allow an authenticated, local user to perform a cross-site scripting (XSS) attack via a crafted LLDP packet. |
References
History
No history.
Subscriptions
Zyxel
Subscribe
Gs1900-10hp
Subscribe
Gs1900-10hp Firmware
Subscribe
Gs1900-16
Subscribe
Gs1900-16 Firmware
Subscribe
Gs1900-24
Subscribe
Gs1900-24 Firmware
Subscribe
Gs1900-24e
Subscribe
Gs1900-24e Firmware
Subscribe
Gs1900-24ep
Subscribe
Gs1900-24ep Firmware
Subscribe
Gs1900-24hp
Subscribe
Gs1900-24hp Firmware
Subscribe
Gs1900-24hpv2
Subscribe
Gs1900-24hpv2 Firmware
Subscribe
Gs1900-48
Subscribe
Gs1900-48 Firmware
Subscribe
Gs1900-48hp
Subscribe
Gs1900-48hp Firmware
Subscribe
Gs1900-48hpv2
Subscribe
Gs1900-48hpv2 Firmware
Subscribe
Gs1900-8
Subscribe
Gs1900-8 Firmware
Subscribe
Gs1900-8hp
Subscribe
Gs1900-8hp Firmware
Subscribe
Status: PUBLISHED
Assigner: Zyxel
Published:
Updated: 2024-09-17T01:46:12.877Z
Reserved: 2021-06-17T00:00:00.000Z
Link: CVE-2021-35030
No data.
Status : Modified
Published: 2021-07-26T12:15:08.817
Modified: 2024-11-21T06:11:42.450
Link: CVE-2021-35030
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD