Zyxel ZyWal/USG/UAG Devices XSS(CVE-2019-12581)

2023-04-13 Zyxel PoC No

Description

Zyxel ZyWall、USG和UAG设备允许远程攻击者通过err_msg参数free_time_failed.cgicgi程序(也称为反射式跨站点脚本)注入任意web脚本或HTML。

PoC

None yet. Search at https://trap.biu.life/?ref=rss

Related Vulnerabilities