Security Advisories

Security Advisories
Security Advisories

Zyxel's latest security announcements and advices

CVE ID Title Last Updated
CVE-2024-40890
CVE-2024-40891
CVE-2025-0890
Zyxel security advisory for command injection and insecure default credentials vulnerabilities in certain legacy DSL CPE
CVE-2024-12398
Zyxel security advisory for improper privilege management vulnerability in APs and security router devices
CVE-2024-8748
CVE-2024-9197
CVE-2024-9200
Zyxel security advisory for buffer overflow and post-authentication command injection vulnerabilities in some 4G LTE/5G NR CPE, DSL/Ethernet CPE, fiber ONTs, and WiFi extenders
CVE-2024-11667
Zyxel security advisory: protecting against recent firewall threats
CVE-2024-8881
CVE-2024-8882
Zyxel security advisory for post-authentication command injection and buffer overflow vulnerabilities in GS1900 series switches
CVE-2024-9677
Zyxel security advisory for insufficiently protected credentials vulnerability in firewalls
CVE-2024-38266
CVE-2024-38267
CVE-2024-38268
CVE-2024-38269
Zyxel security advisory for post-authentication memory corruption vulnerabilities in some DSL/Ethernet CPE, fiber ONT, WiFi extender, and security router versions
CVE-2024-38270
Zyxel security advisory for insufficient entropy vulnerability for web authentication tokens generation in GS1900 series switches
CVE-2024-6342
Zyxel security advisory for OS command injection vulnerability in NAS products
CVE-2024-7261
Zyxel security advisory for OS command injection vulnerability in APs and security router devices