Cross-site scripting (XSS) vulnerability in Forms/General_1 in the management interface in ZyNOS firmware 3.62(WK.6) on the Zyxel Zywall 2 device allows remote authenticated administrators to inject arbitrary web script or HTML via the sysSystemName parameter.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Zynos | Zyxel | 3.62 (including) | 3.62 (including) |
Zywall_2 | Zyxel | * | * |