Multiple cross-site scripting (XSS) vulnerabilities in Forms/rpAuth_1 on ZyXEL P-660HW-T1 2 devices with ZyNOS firmware 3.40(AXH.0) allow remote attackers to inject arbitrary web script or HTML via the (1) LoginPassword or (2) hiddenPassword parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: certcc

Published: 2015-12-31T02:00:00

Updated: 2024-08-06T07:06:35.143Z

Reserved: 2015-08-14T00:00:00

Link: CVE-2015-6017

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2015-12-31T05:59:15.880

Modified: 2016-12-07T18:17:40.077

Link: CVE-2015-6017

cve-icon Redhat

No data.