A cross-site scripting (XSS) vulnerability in Zyxel NBG-418N v2 firmware versions prior to V1.00(AARP.13)C0, which could allow an attacker to store malicious scripts in the Logs page of the GUI on a vulnerable device. A successful XSS attack could force an authenticated user to execute the stored malicious scripts and then result in a denial-of-service (DoS) condition when the user visits the Logs page of the GUI on the device.
Metrics
Affected Vendors & Products
References
History
Tue, 25 Mar 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 06 Dec 2024 07:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
cvssV3_1
|
cvssV3_1
|

Status: PUBLISHED
Assigner: Zyxel
Published: 2023-02-07T00:00:00.000Z
Updated: 2025-03-25T14:49:09.998Z
Reserved: 2022-11-15T00:00:00.000Z
Link: CVE-2022-45441

Updated: 2024-08-03T14:09:57.067Z

Status : Modified
Published: 2023-02-07T02:15:07.967
Modified: 2024-12-06T07:15:05.190
Link: CVE-2022-45441

No data.