CVE-2004-1789

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2004
Last modified:
11/07/2017

Description

Cross-site scripting (XSS) vulnerability in the web management interface in ZyWALL 10 4.07 allows remote attackers to inject arbitrary web script or HTML via the rpAuth_1 page.

Vulnerable products and versions

CPE From Up to
cpe:2.3:h:zyxel:zywall10:3.20_wa0:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:zywall10:3.20_wa1:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:zywall10:3.24_wa0:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:zywall10:3.24_wa1:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:zywall10:3.24_wa2:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:zywall10:3.50_wa1:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:zywall10:3.50_wa2:*:*:*:*:*:*:*
cpe:2.3:h:zyxel:zywall10:4.07:*:*:*:*:*:*:*