ZeroHour

CVE-2021-35028

CVSS 3.1
7.8 high
EPSS
<1%p23
Published
()
Modified
Description

A command injection vulnerability in the CGI program of the Zyxel VPN2S firmware version 1.12 could allow an authenticated, local user to execute arbitrary OS commands.

Vendors
zyxel
Products
zywall vpn2s firmware
Weakness
CWE-78
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.