Zyxel and Veeam Flaws Under Active Exploitation With Command and SYSTEM Access
Zyxel and Veeam Flaws Under Active Exploitation With Command and SYSTEM Access
22 September 2026
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a now-patched security flaw impacting Zyxel GS1900 series switches to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.
The vulnerability, tracked as CVE-2026-7273 (CVSS score: 8.8), is a stack-based buffer overflow vulnerability that could result in arbitrary operating