Cleartext Storage Vulnerability in Zyxel NBG6604 Firmware
CVE-2021-35035
4.9MEDIUM
Summary
A vulnerability exists in the Zyxel NBG6604 firmware that allows remote, authenticated attackers to access sensitive information stored in the configuration file in cleartext. This flaw could be exploited to compromise the security of the network and expose confidential data. It is crucial for users of the Zyxel NBG6604 router to review their firmware for updates and apply necessary security patches to mitigate the risk associated with this vulnerability.
Affected Version(s)
NBG6604 series firmware 1.00(ABIR.8)C0
References
CVSS V3.1
Score:
4.9
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
High
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved