6.9
CVSSv2

CVE-2021-35033

Published: 23/11/2021 Updated: 27/10/2022
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

A vulnerability in specific versions of Zyxel NBG6818, NBG7815, WSQ20, WSQ50, WSQ60, and WSR30 firmware with pre-configured password management could allow an malicious user to obtain root access of the device, if the local attacker dismantles the device and uses a USB-to-UART cable to connect the device, or if the remote assistance feature had been enabled by an authenticated user.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zyxel nbg6818_firmware

zyxel nbg7815_firmware

zyxel wsq20_firmware

zyxel wsq50_firmware

zyxel wsq60_firmware

zyxel wsr30_firmware