CVE-2026-1459
A post-authentication command injection vulnerability in the TR-369 certificate download CGI program of the Zyxel VMG3625-T50B firmware versions through 5.50(ABPM.9.7)C0 could allow an authenticated attacker with administrator privileges to execute operating system (OS) commands on an affected device.
Vendor
Product
CWE
Yayın Tarihi
2026-02-24 03:16:00
Güncelleme
2026-02-25 18:05:40
Source Identifier
security@zyxel.com.tw
KEV Date Added
-