logo

Zyxel won’t patch newly exploited flaws in end-of-life routers

ID: 25265642-01e1-5ffb-b266-2e9bf8e470a8

STIX ID: report--25265642-01e1-5ffb-b266-2e9bf8e470a8

Feed Name: Bleeping Computer

Threat Score
80/100

Date Published: 2025-02-04

Date Updated: 2026-04-20

Author: Bill Toulas

...
...

Zyxel and security researchers disclosed critical command-injection vulnerabilities and insecure default credentials in multiple end-of-life Zyxel CPE router models; VulnCheck released PoCs and GreyNoise reported exploitation attempts in the wild, while Zyxel recommends replacing affected devices due to lack of patches.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.