ZyXEL B-240 Wireless Ethernet...

- AV AC AU C I A
发布: 2004-12-31
修订: 2025-04-13

A remote cross-site scripting vulnerability reportedly affects the Web-administration interface of the ZyXEL B-240 Wireless Ethernet Adapter. This issue is due to a failure of the application to properly sanitize URI input prior to including it in dymanic content. An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user in the context of the Web administration page. This may facilitate theft of cookie-based authentication credentials as well as other attacks. Apparently denial of service attacks are possible as well.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息