Home / Sep 23, 2026 / Story
0
#5 The Hacker News general September 22, 2026 at 05:31 UTC

Zyxel and Veeam Flaws Under Active Exploitation With Command and SYSTEM Access

By [email protected] (The Hacker News)

AI Summary

CISA added CVE-2026-7273, a CVSS 8.8 stack-based buffer overflow in Zyxel GS1900-series switches, to its Known Exploited Vulnerabilities catalog after Chinese threat actors used it to exfiltrate data from 996 devices and over 18,500 backend database records. Federal agencies face a mandatory patching deadline, and the active exploitation by a nation-state actor makes this urgent for network administrators running Zyxel managed switches.

Relevance score: 87.0/100

# More from September 23