#5
The Hacker News
general
September 22, 2026 at 05:31 UTC
Zyxel and Veeam Flaws Under Active Exploitation With Command and SYSTEM Access
By [email protected] (The Hacker News)
AI Summary
CISA added CVE-2026-7273, a CVSS 8.8 stack-based buffer overflow in Zyxel GS1900-series switches, to its Known Exploited Vulnerabilities catalog after Chinese threat actors used it to exfiltrate data from 996 devices and over 18,500 backend database records. Federal agencies face a mandatory patching deadline, and the active exploitation by a nation-state actor makes this urgent for network administrators running Zyxel managed switches.
Relevance score: 87.0/100
Sponsored
Protect Your Business
Expert cybersecurity solutions to safeguard your organization from evolving threats.
Get Protected →