A vulnerability in the TFTP client of Zyxel GS1900 series firmware, XGS1210 series firmware, and XGS1250 series firmware, which could allow an authenticated LAN user to execute arbitrary OS commands via the GUI of the vulnerable device.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Zyxel
Subscribe
|
Gs1900-10hp
Subscribe
Gs1900-10hp Firmware
Subscribe
Gs1900-16
Subscribe
Gs1900-16 Firmware
Subscribe
Gs1900-24
Subscribe
Gs1900-24 Firmware
Subscribe
Gs1900-24e
Subscribe
Gs1900-24e Firmware
Subscribe
Gs1900-24ep
Subscribe
Gs1900-24ep Firmware
Subscribe
Gs1900-24hp
Subscribe
Gs1900-24hp Firmware
Subscribe
Gs1900-24hpv2
Subscribe
Gs1900-24hpv2 Firmware
Subscribe
Gs1900-48
Subscribe
Gs1900-48 Firmware
Subscribe
Gs1900-48hp
Subscribe
Gs1900-48hp Firmware
Subscribe
Gs1900-48hpv2
Subscribe
Gs1900-48hpv2 Firmware
Subscribe
Gs1900-8
Subscribe
Gs1900-8 Firmware
Subscribe
Gs1900-8hp
Subscribe
Gs1900-8hp Firmware
Subscribe
Xgs1210-12
Subscribe
Xgs1210-12 Firmware
Subscribe
Xgs1250-12
Subscribe
Xgs1250-12 Firmware
Subscribe
|
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-21678 | A vulnerability in the TFTP client of Zyxel GS1900 series firmware, XGS1210 series firmware, and XGS1250 series firmware, which could allow an authenticated LAN user to execute arbitrary OS commands via the GUI of the vulnerable device. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Zyxel
Published:
Updated: 2024-08-04T00:33:49.873Z
Reserved: 2021-06-17T00:00:00
Link: CVE-2021-35031
No data.
Status : Modified
Published: 2021-12-28T11:15:07.463
Modified: 2024-11-21T06:11:42.600
Link: CVE-2021-35031
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD