An XSS vulnerability in the Zyxel NAS 326 version 5.21 and below allows a remote authenticated attacker to inject arbitrary JavaScript or HTML via the user, group, and file-share description fields.
References
Link Resource
http://maxwelldulin.com/BlogPost?post=3236967424 Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2019-04-09T05:00:20

Updated: 2019-04-09T05:00:20

Reserved: 2019-03-29T00:00:00


Link: CVE-2019-10634

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2019-04-09T05:29:00.400

Modified: 2019-04-09T18:19:56.933


Link: CVE-2019-10634

JSON object: View

cve-icon Redhat Information

No data.

CWE