A vulnerability was found in the CGI program in Zyxel GS1900-8 firmware version V2.60, that did not properly sterilize packet contents and could allow an authenticated, local user to perform a cross-site scripting (XSS) attack via a crafted LLDP packet.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: Zyxel
Published: 2021-07-26T11:20:40.191209Z
Updated: 2024-09-17T01:46:12.877Z
Reserved: 2021-06-17T00:00:00
Link: CVE-2021-35030
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-07-26T12:15:08.817
Modified: 2021-08-13T12:53:43.413
Link: CVE-2021-35030
Redhat
No data.