CVE-2026-7273: Zyxel GS1900 Series Switches
Zyxel GS1900シリーズ スイッチには、CGIプログラムのスタックベースのバッファオーバーフロー脆弱性が含まれているため、LAN ベースの未認証の攻撃者が欠陥を悪用し、生成された HTTP リクエストを介して OS コマンドを実行できます。
CISA (English)
Zyxel GS1900 series switches contain a stack-based buffer overflow vulnerability in the CGI program which could allow a LAN-based, unauthenticated attacker to exploit the flaw and potentially execute OS commands via a crafted HTTP request.
- ベンダー
- Zyxel
- 製品
- GS1900 Series Switches
- 脆弱性
- Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability
- 追加日
- 2026/09/21
- CISA対応期限(米国連邦機関向け)
- 2026/09/24
- ランサムウェア攻撃での利用
- 不明
- 弱点(CWE)
- CWE-121
参考情報
当サイトはCISAのカタログを情報提供のために要約したもので、セキュリティ上の助言ではありません。ベンダーの案内と公式のアドバイザリーに従ってください。
最終更新: · カタログのバージョン 2026.10.02