A cross-site scripting (XSS) vulnerability in Zyxel NBG...
Moderate severity
Unreviewed
Published
Feb 7, 2023
to the GitHub Advisory Database
•
Updated Feb 22, 2023
Description
Published by the National Vulnerability Database
Feb 7, 2023
Published to the GitHub Advisory Database
Feb 7, 2023
Last updated
Feb 22, 2023
A cross-site scripting (XSS) vulnerability in Zyxel NBG-418N v2 firmware versions prior to V1.00(AARP.13)C0, which could allow an attacker to store malicious scripts in the Logs page of the GUI on a vulnerable device. A successful XSS attack could force an authenticated user to execute the stored malicious scripts and then result in a denial-of-service (DoS) condition when the user visits the Logs page of the GUI on the device.
References