In firmware version 4.50 of Zyxel XGS2210-52HP, multiple stored cross-site scripting (XSS) issues allows remote authenticated users to inject arbitrary web script via an rpSys.html Name or Location field.
References
Link Resource
https://gist.github.com/leona4040/6541e3b11da6ea7675d0498d0db98832 Exploit Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2020-03-31T17:04:56

Updated: 2020-03-31T17:04:56

Reserved: 2019-07-10T00:00:00


Link: CVE-2019-13495

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2020-03-31T18:15:26.507

Modified: 2020-04-01T16:23:26.773


Link: CVE-2019-13495

JSON object: View

cve-icon Redhat Information

No data.

CWE