CVE-2026-1460 | Teknoloji dünyasından en güncel haberleri ve güvenlikle ilgili gelişmeleri takip edin.

A post-authentication command injection vulnerability in the “DomainName” parameter of the DHCP configuration file in Zyxel DX3301-T0 and EX3301-T0 firmware ver…
High CVSS: 7.2

CVE-2026-1460

A post-authentication command injection vulnerability in the “DomainName” parameter of the DHCP configuration file in Zyxel DX3301-T0 and EX3301-T0 firmware versions through 5.50(ABVY.7.1)C0 could allow an authenticated attacker with administrator privileges to execute OS commands on an affected device.
Vendor
-
Product
-
CWE
CWE-78
Yayın Tarihi
2026-04-28 03:16:02
Güncelleme
2026-04-28 03:16:02
Source Identifier
security@zyxel.com.tw
KEV Date Added
-

Kategoriler

Referanslar