6.1
CVSSv3

CVE-2021-46387

Published: 01/03/2022 Updated: 09/03/2022
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

ZyXEL ZyWALL 2 Plus Internet Security Appliance is affected by Cross Site Scripting (XSS). Insecure URI handling leads to bypass security restriction to achieve Cross Site Scripting, which allows an attacker able to execute arbitrary JavaScript codes to perform multiple attacks such as clipboard hijacking and session hijacking.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zyxel zywall_2_plus_internet_security_appliance_firmware -

Exploits

Zyxel ZyWALL 2 Plus suffers from a cross site scripting vulnerability ...