Cross-site Scripting Flaw in Zyxel GS1900 Series Switches
CVE-2021-35030
3.5LOW
What is CVE-2021-35030?
A vulnerability in the CGI program of the Zyxel GS1900-8 switch firmware (V2.60) allows authenticated local users to exploit improperly sanitized packet contents. This flaw facilitates the execution of cross-site scripting (XSS) attacks via specially crafted LLDP packets, posing risks to network integrity and user data.
Affected Version(s)
GS1900-8 Firmware 2.60