A stack-based buffer overflow vulnerability has been reported in the CGI program of Zyxel GS1900 series switch firmware which could allow an unauthenticated attacker with LAN level access to execute OS commands on affected device.
Target Audience:
Organizations and network administrators using affected Zyxel products.
Risk Assessment:
High risk of unauthorized OS command execution, potential compromise of affected network switches and disruption of network operations.
Impact Assessment:
Potential for OS command execution and compromise of affected network switches, with possible impact to confidentiality, integrity, and availability.
The information provided herein is on "as is" basis, without warranty of any kind.