CVE-2026-4795: Zyxel GS1200-10v3 Firmware

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

A missing authorization vulnerability in Zyxel GS1200-5v3 firmware versions through 1.00(ACPS.2)C0, GS1200-8v3 firmware versions through 1.00(ACPT.2)C0,  GS1200-5HPv3 firmware versions through 1.00(ACPU.2)C0, GS1200-8HPv3 firmware versions through 1.00(ACPV.2)C0, and GS1200-10v3 firmware versions through 1.00(ACPW.2)C0 could allow a LAN-based, unauthenticated attacker to read the system configuration from a log file via a crafted HTTP request.

Affected products

  • Zyxel GS1200-10v3 Firmware: up to and including 1.00(ACPW.2)C0
  • Zyxel GS1200-5hpv3 Firmware: up to and including 1.00(ACPU.2)C0
  • Zyxel GS1200-5v3 Firmware: up to and including 1.00(ACPS.2)C0
  • Zyxel GS1200-8hpv3 Firmware: up to and including 1.00(ACPV.2)C0
  • Zyxel GS1200-8v3 Firmware: up to and including 1.00(ACPT.2)C0

Published 2026-05-26. Last modified 2026-07-24.