Zyxel Nbg6604 Series Firmware vulnerabilities
2 known vulnerabilities affecting zyxel/nbg6604_series_firmware.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2021-35034CRITICALCVSS 9.1v1.00(ABIR.8)C02021-12-29
CVE-2021-35034 [CRITICAL] CWE-613 CVE-2021-35034: An insufficient session expiration vulnerability in the CGI program of the Zyxel NBG6604 firmware co
An insufficient session expiration vulnerability in the CGI program of the Zyxel NBG6604 firmware could allow a remote attacker to access the device if the correct token can be intercepted.
cvelistv5nvd
CVE-2021-35035MEDIUMCVSS 6.5v1.00(ABIR.8)C02021-12-29
CVE-2021-35035 [MEDIUM] CWE-312 CVE-2021-35035: A cleartext storage of sensitive information vulnerability in the Zyxel NBG6604 firmware could allow
A cleartext storage of sensitive information vulnerability in the Zyxel NBG6604 firmware could allow a remote, authenticated attacker to obtain sensitive information from the configuration file.
cvelistv5nvd