Cybersecurity

Zyxel security advisory for authentication bypass and command injection vulnerabilities in NAS products | Zyxel Networks

CVEs: CVE-2023-35137, CVE-2023-35138, CVE-2023-37927, CVE-2023-37928, CVE-2023-4473, CVE-2023-4474 Summary Zyxel has released patches addressing an authentication bypass vulnerability and command injection vulnerabilities in NAS products. Users are advised to install them for optimal protection. What are the vulnerabilities? CVE-2023-35137 An improper authentication vulnerability in the authentication module in Zyxel NAS devices could allow an unauthenticated attacker […]