Zyxel and Veeam Flaws Under Active Exploitation With Command and SYSTEM Access
News Source : Internet
News Summary
- The u.s. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a now-patched security flaw impacting Zyxel GS1900 series switches to its Known Exploited Vulnerabilities ( KEV ) catalog.
- The vulnerability, tracked as CVE-2026-7273 (CVSS score: 8.8), is a stack-based buffer overflow vulnerability that could result in arbitrary operating system (OS) command execution.
- The addition follows a report from GreyNoise about a suspected Chinese-speaking malicious cyber actor that has weaponized the flaw since August 17, 2026.
The U.S.
Never miss a story from us, subscribe to our newsletter