VPN2S
by Zyxel
CVEs (2)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-35028 | 0.00 | — | 0.00 | Sep 29, 2021 | A command injection vulnerability in the CGI program of the Zyxel VPN2S firmware version 1.12 could allow an authenticated, local user to execute arbitrary OS commands. | |||
| CVE-2021-35027 | 0.00 | — | 0.02 | Sep 29, 2021 | A directory traversal vulnerability in the web server of the Zyxel VPN2S firmware version 1.12 could allow a remote attacker to gain access to sensitive information. |
- CVE-2021-35028Sep 29, 2021risk 0.00cvss —epss 0.00
A command injection vulnerability in the CGI program of the Zyxel VPN2S firmware version 1.12 could allow an authenticated, local user to execute arbitrary OS commands.
- CVE-2021-35027Sep 29, 2021risk 0.00cvss —epss 0.02
A directory traversal vulnerability in the web server of the Zyxel VPN2S firmware version 1.12 could allow a remote attacker to gain access to sensitive information.