AllCyberNews

CVE-2026-7273

CISA Adds One Known Exploited Vulnerability to Catalog

CVSS 8.8 high · Zyxel GS1900-48HPv2 firmware · published 2026-06-16

A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow a LAN-based, unauthenticated attacker to exploit the flaw and potentially execute OS commands via a crafted HTTP request.

Coverage 2 sources

  1. 2026-09-21 CISA Cybersecurity Advisories high CISA Adds One Known Exploited Vulnerability to Catalog

    CISA added CVE-2026-7273, a stack-based buffer overflow vulnerability in Zyxel GS1900 Series Switches, to its Known Exploited Vulnerabilities Catalog.

  2. 2026-09-22 Help Net Security high Attacker compromised nearly 1000 Zyxel switches since August (CVE-2026-7273)

    A Chinese-speaking threat actor exploited CVE-2026-7273 in 996 Zyxel GS1900 switches across 48 countries.

Also covered