PT-2006-4775 · Zyxel · Zyxel Prestige 660H-61 Adsl Router
Jos Ramn Palanco
·
Published
2006-07-31
·
Updated
2018-10-17
·
CVE-2006-3929
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Zyxel Prestige 660H-61 ADSL Router version 3.40(PT.0)b32
Description
The issue is related to a cross-site scripting (XSS) vulnerability. This vulnerability allows remote attackers to inject arbitrary web script or HTML via hex-encoded values in the
a parameter in the Forms/rpSysAdmin script.Recommendations
For Zyxel Prestige 660H-61 ADSL Router version 3.40(PT.0)b32, consider restricting access to the Forms/rpSysAdmin script until a patch is available. Avoid using hex-encoded values in the
a parameter to minimize the risk of exploitation.Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Zyxel Prestige 660H-61 Adsl Router