CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 5.4. It affects Java. It may be remotely exploitable. Exploitation may require the attacker to be authenticated.
CVE
CVE-2019-10634
Severity
MEDIUM
CVSS
5.4
EPSS
0.82%
Java
Original NVD Description
An XSS vulnerability in the Zyxel NAS 326 version 5.21 and below allows a remote authenticated attacker to inject arbitrary JavaScript or HTML via the user, group, and file-share description fields.
Related CVEs
Other vulnerabilities affecting the same vendor(s)