Security Advisory

CVE-2021-4030

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2022-02-22 14:25:10
Last updated 2024-08-03 17:16:03
Assigner Zyxel
State PUBLISHED

Description

A cross-site request forgery vulnerability in the HTTP daemon of the Zyxel ARMOR Z1/Z2 firmware could allow an attacker to execute arbitrary commands if they coerce or trick a local user to visit a compromised website with malicious scripts.