mirror of
https://github.com/0xMarcio/cve.git
synced 2026-05-11 12:37:41 +02:00
846 B
846 B
CVE-2015-6017
Description
Multiple cross-site scripting (XSS) vulnerabilities in Forms/rpAuth_1 on ZyXEL P-660HW-T1 2 devices with ZyNOS firmware 3.40(AXH.0) allow remote attackers to inject arbitrary web script or HTML via the (1) LoginPassword or (2) hiddenPassword parameter.
POC
Reference
- https://www.kb.cert.org/vuls/id/870744
- https://www.kb.cert.org/vuls/id/870744
- https://www.kb.cert.org/vuls/id/BLUU-9ZQU2R
- https://www.kb.cert.org/vuls/id/BLUU-9ZQU2R
Github
No PoCs found on GitHub currently.