CVE-2007-4318

ZyNOS 3.62(WK.6) - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in Forms/General_1 in the management interface in ZyNOS firmware 3.62(WK.6) on the Zyxel Zywall 2 device allows remote authenticated administrators to inject arbitrary web script or HTML via the sysSystemName parameter.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Henri Lindberg · htmlremotehardware
https://www.exploit-db.com/exploits/30485

Scores

EPSS 0.0638
EPSS Percentile 91.0%

Details

Status published
Products (2)
zyxel/zynos 3.62
zyxel/zywall_2
Published Aug 13, 2007
Tracked Since Feb 18, 2026