CVE-2026-7273 Details
Description
A stack-based buffer overflow vulnerability in the CGI program of Zyxel GS1900-48HPv2 firmware versions through 2.90(ABTQ.1)C0 could allow a LAN-based, unauthenticated attacker to exploit the flaw and potentially execute OS commands via a crafted HTTP request.
A stack-based buffer overflow vulnerability has been identified in the CGI program of Zyxel GS1900-48HPv2 switches running firmware versions through 2.90(ABTQ.1)C0. This vulnerability could allow an unauthenticated attacker on the local network to exploit the flaw and execute operating system commands by sending a crafted HTTP request.
Users are advised to update to version 2.90(ABTQ.2)C0. Instructions for downloading the patch are available on the Zyxel Download Library.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jun 17, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-7273 | CISA-ADP | Third Party AdvisoryUS Government Resource |
| https://www.greynoise.io/blog/open-season-on-kapibala-attacker-steals-government-records-wordpress-exploitation | CISA-ADP | ExploitThird Party Advisory |
| https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-stack-based-buffer-overflow-vulnerability-in-gs1900-series-switches-06-16-2026 | [email protected] | Vendor Advisory |
This CVE is in CISA's Known Exploited Vulnerabilities Catalog
Reference CISA's BOD 22-01 and Known Exploited Vulnerabilities Catalog for further guidance and requirements.
| Vulnerability Name | Date Added | Due Date | Required Action |
|---|---|---|---|
| Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability | Sep 21, 2026 | Sep 24, 2026 | Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines. |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-121 | Stack-based Buffer Overflow | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| zyxel gs1900-8 firmware | < 2.90\(aahh.2\)c0 |
CPE
Remediation
| |
| zyxel gs1900-8 | All versions |
CPE
Remediation
| |
| zyxel gs1900-8hp firmware | < 2.90\(aahi.2\)c0 |
CPE
Remediation
| |
| zyxel gs1900-8hp | All versions |
CPE
Remediation
| |
| zyxel gs1900-10hp firmware | < 2.90\(aazi.2\)c0 |
CPE
Remediation
| |
| zyxel gs1900-10hp | All versions |
CPE
Remediation
| |
| zyxel gs1900-16 firmware | < 2.90\(aahj.2\)c0 |
CPE
Remediation
| |
| zyxel gs1900-16 | All versions |
CPE
Remediation
| |
| zyxel gs1900-24 firmware | < 2.90\(aahl.2\)c0 |
CPE
Remediation
| |
| zyxel gs1900-24 | All versions |
CPE
Remediation
| |
| zyxel gs1900-24e firmware | < 2.90\(aahk.2\)c0 |
CPE
Remediation
| |
| zyxel gs1900-24e | All versions |
CPE
Remediation
| |
| zyxel gs1900-24ep firmware | < 2.90\(abto.2\)c0 |
CPE
Remediation
| |
| zyxel gs1900-24ep | All versions |
CPE
Remediation
| |
| zyxel gs1900-24hpv2 firmware | < 2.90\(abtp.2\)c0 |
CPE
Remediation
| |
| zyxel gs1900-24hpv2 | All versions |
CPE
Remediation
| |
| zyxel gs1900-48 firmware | < 2.90\(aahn.2\)c0 |
CPE
Remediation
| |
| zyxel gs1900-48 | All versions |
CPE
Remediation
| |
| zyxel gs1900-48hpv2 firmware | < 2.90\(abtq.2\)c0 |
CPE
Remediation
| |
| zyxel gs1900-48hpv2 | All versions |
CPE
Remediation
| |
Change History
9 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 22, 2026 | Initial Analysis | [email protected] |
| Sep 22, 2026 | CVE Modified | CISA-ADP |
| Sep 21, 2026 | CVE CISA KEV Update | Cybersecurity and Infrastructure Security Agency (CISA) U.S. Civilian Government |
| Sep 21, 2026 | CVE Modified | [email protected] |
| Sep 21, 2026 | CVE Modified | CISA-ADP |
| Jun 18, 2026 | CVE Modified | CISA-ADP |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 17, 2026 | CVE Modified | [email protected] |
| Jun 16, 2026 | New CVE Received | [email protected] |