On Zyxel ATP200, ATP500, ATP800, USG20-VPN, USG20W-VPN, USG40, USG40W, USG60, USG60W, USG110, USG210, USG310, USG1100, USG1900, USG2200-VPN, ZyWALL 110, ZyWALL 310, ZyWALL 1100 devices, the security firewall login page is vulnerable to Reflected XSS via the unsanitized 'mp_idx' parameter.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Zyxel
Subscribe
|
Atp200
Subscribe
Atp200 Firmware
Subscribe
Atp500
Subscribe
Atp500 Firmware
Subscribe
Atp800
Subscribe
Atp800 Firmware
Subscribe
Usg110
Subscribe
Usg1100
Subscribe
Usg1100 Firmware
Subscribe
Usg110 Firmware
Subscribe
Usg1900
Subscribe
Usg1900 Firmware
Subscribe
Usg20-vpn
Subscribe
Usg20-vpn Firmware
Subscribe
Usg20w-vpn
Subscribe
Usg20w-vpn Firmware
Subscribe
Usg210
Subscribe
Usg210 Firmware
Subscribe
Usg2200-vpn
Subscribe
Usg2200-vpn Firmware
Subscribe
Usg310
Subscribe
Usg310 Firmware
Subscribe
Usg40
Subscribe
Usg40 Firmware
Subscribe
Usg40w
Subscribe
Usg40w Firmware
Subscribe
Usg60
Subscribe
Usg60 Firmware
Subscribe
Usg60w
Subscribe
Usg60w Firmware
Subscribe
Vpn100
Subscribe
Vpn100 Firmware
Subscribe
Vpn300
Subscribe
Vpn300 Firmware
Subscribe
Vpn50
Subscribe
Vpn50 Firmware
Subscribe
Zywall 110
Subscribe
Zywall 1100
Subscribe
Zywall 1100 Firmware
Subscribe
Zywall 110 Firmware
Subscribe
Zywall 310
Subscribe
Zywall 310 Firmware
Subscribe
|
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T22:10:08.670Z
Reserved: 2019-03-23T00:00:00
Link: CVE-2019-9955
No data.
Status : Modified
Published: 2019-04-22T20:29:00.447
Modified: 2024-11-21T04:52:39.943
Link: CVE-2019-9955
No data.
OpenCVE Enrichment
No data.
Weaknesses