Zyxel Releases Security Updates
Affected platforms
The following platforms are known to be affected:
Zyxel ATP, USG, USG FLEX, and VPN series firewalls Versions: ZLD 4.60
Zyxel NXC2500 and NXC5500 series access points Versions: 6.00 through 6.10
Threat details
Introduction
Zyxel has released security updates to address a hardcoded credential vulnerability affecting a number of their security firewall and access point products. A remote unauthenticated attacker could exploit this vulnerability to take control of an affected system.
Remediation advice
Affected organisations are encouraged to review Zyxel's security advisory for CVE-2020-29583 and apply any relevant updates.
Definitive source of threat updates
Last edited: 12 January 2021 4:00 pm