CVE-2026-7273: Zyxel GS1900 Series Switches
Zyxel GS1900系列交換機在CGI程式中包含一個基於堆疊的緩衝溢位弱點,這可以讓一個基於區域網的,未經認證的攻擊器利用瑕疵,並有可能透過一個精心設計的HTTP請求執行OS指令。
CISA (English)
Zyxel GS1900 series switches contain a stack-based buffer overflow vulnerability in the CGI program which could allow a LAN-based, unauthenticated attacker to exploit the flaw and potentially execute OS commands via a crafted HTTP request.
- 廠商
- Zyxel
- 產品
- GS1900 Series Switches
- 漏洞
- Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability
- 加入日期
- 2026年9月21日
- CISA 修補期限(美國聯邦機關)
- 2026年9月24日
- 已知用於勒索軟體攻擊
- 未知
- 弱點(CWE)
- CWE-121
參考資料
本站僅為資訊目的整理 CISA 目錄,並非資安建議。請遵循廠商指引與官方公告。
最後更新: · 目錄版本 2026.10.02