On Zyxel ATP200, ATP500, ATP800, USG20-VPN, USG20W-VPN, USG40, USG40W, USG60, USG60W, USG110, USG210, USG310, USG1100, USG1900, USG2200-VPN, ZyWALL 110, ZyWALL 310, ZyWALL 1100 devices, the security firewall login page is vulnerable to Reflected XSS via the unsanitized 'mp_idx' parameter.

Project Subscriptions

Vendors Products
Atp200 Firmware Subscribe
Atp500 Firmware Subscribe
Atp800 Firmware Subscribe
Usg1100 Subscribe
Usg1100 Firmware Subscribe
Usg110 Firmware Subscribe
Usg1900 Subscribe
Usg1900 Firmware Subscribe
Usg20-vpn Subscribe
Usg20-vpn Firmware Subscribe
Usg20w-vpn Subscribe
Usg20w-vpn Firmware Subscribe
Usg210 Firmware Subscribe
Usg2200-vpn Subscribe
Usg2200-vpn Firmware Subscribe
Usg310 Firmware Subscribe
Usg40 Firmware Subscribe
Usg40w Firmware Subscribe
Usg60 Firmware Subscribe
Usg60w Firmware Subscribe
Vpn100 Firmware Subscribe
Vpn300 Firmware Subscribe
Vpn50 Firmware Subscribe
Zywall 110 Subscribe
Zywall 1100 Subscribe
Zywall 1100 Firmware Subscribe
Zywall 110 Firmware Subscribe
Zywall 310 Subscribe
Zywall 310 Firmware Subscribe
Advisories

No advisories yet.

Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-04T22:10:08.670Z

Reserved: 2019-03-23T00:00:00

Link: CVE-2019-9955

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2019-04-22T20:29:00.447

Modified: 2024-11-21T04:52:39.943

Link: CVE-2019-9955

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.

Weaknesses