logo

Zyxel issues emergency RCE patch for end-of-life NAS devices

ID: 21efa1c2-2a61-538b-9227-7d1a2759364e

STIX ID: report--21efa1c2-2a61-538b-9227-7d1a2759364e

Feed Name: Bleeping Computer

Threat Score
70/100

Date Published: 2024-06-04

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Zyxel released emergency patches for three critical vulnerabilities (unauthenticated command injection and remote code execution) in legacy NAS326 and NAS542 devices, while two additional privilege-escalation and information-disclosure flaws remain unpatched; proof-of-concept exploits have been published and owners are advised to update affected firmware despite the devices reaching end-of-life.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.