Skip to main content

Zyxel Releases Security Updates

Security updates address vulnerabilities in Zyxel routers

Report a cyber attack: call 0300 303 5222 or email [email protected]

Summary

Security updates address vulnerabilities in Zyxel routers


Threat details

Introduction

Zyxel has released security updates to address vulnerabilities in AC1200 Dual-Band Wireless Router and Wireless N300 Home Router. The post-authentication command injection vulnerability in Zyxel's AC1200 router could allow an authenticated attacker to execute some OS commands remotely by sending a specially crafted HTTP request. The vulnerabilities in Zyxel's N300 router could allow a remote attacker to cause a denial-of-service condition or perform remote code execution. 


Remediation advice

Affected organisations are encouraged to review Zyxel's security advisories and apply the relevant updates.


Remediation steps

Type Step
Patch

Zyxel security advisory for post-authentication command injection vulnerability in NBG6604 home router


https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-post-authentication-command-injection-vulnerability-in-nbg6604-home-router
Patch

Zyxel security advisory for multiple vulnerabilities in NBG-418N v2 home router


https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-multiple-vulnerabilities-in-nbg-418n-v2-home-router


Last edited: 2 May 2023 3:58 pm