CVE-2021-4030
24.02.2022, 15:15
A cross-site request forgery vulnerability in the HTTP daemon of the Zyxel ARMOR Z1/Z2 firmware could allow an attacker to execute arbitrary commands if they coerce or trick a local user to visit a compromised website with malicious scripts.
Vendor | Product | Version |
---|---|---|
zyxel | nbg6816_firmware | 1.00\(aawb.10\)c0 |
zyxel | nbg6817_firmware | 𝑥 < 1.00\(abcs.11\)c0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration