Active Exploitation of Zyxel and Veeam Vulnerabilities Enables Command Execution and SYSTEM Access
The U.S. CISA has added a critical buffer overflow vulnerability in Zyxel GS1900 switches (CVE-2026-7273, CVSS 8.8) to its KEV catalog due to active exploitation, enabling OS command execution. A separate privilege escalation flaw in Veeam Agent for Windows (CVE-2026-32996, CVSS 7.3) allows attackers to gain SYSTEM-level access via local exploitation.
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added a now-patched security flaw impacting Zyxel GS1900 series switches to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.
The vulnerability, tracked as CVE-2026-7273 (CVSS score: 8.8), is a stack-based buffer overflow vulnerability that could result in arbitrary operating
*** END OF TRANSMISSION ***