Zyxel Releases Security Updates
Security updates address vulnerabilities in Zyxel routers
Summary
Security updates address vulnerabilities in Zyxel routers
Affected platforms
The following platforms are known to be affected:
Threat details
Introduction
Zyxel has released security updates to address vulnerabilities in AC1200 Dual-Band Wireless Router and Wireless N300 Home Router. The post-authentication command injection vulnerability in Zyxel's AC1200 router could allow an authenticated attacker to execute some OS commands remotely by sending a specially crafted HTTP request. The vulnerabilities in Zyxel's N300 router could allow a remote attacker to cause a denial-of-service condition or perform remote code execution.
Remediation advice
Affected organisations are encouraged to review Zyxel's security advisories and apply the relevant updates.
Remediation steps
| Type | Step |
|---|---|
| Patch |
Zyxel security advisory for post-authentication command injection vulnerability in NBG6604 home router https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-post-authentication-command-injection-vulnerability-in-nbg6604-home-router |
| Patch |
Zyxel security advisory for multiple vulnerabilities in NBG-418N v2 home router https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-multiple-vulnerabilities-in-nbg-418n-v2-home-router |
Definitive source of threat updates
CVE Vulnerabilities
Last edited: 2 May 2023 3:58 pm