CVE-2026-4795: Zyxel GS1200-10v3 Firmware
Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.
A missing authorization vulnerability in Zyxel GS1200-5v3 firmware versions through 1.00(ACPS.2)C0, GS1200-8v3 firmware versions through 1.00(ACPT.2)C0, GS1200-5HPv3 firmware versions through 1.00(ACPU.2)C0, GS1200-8HPv3 firmware versions through 1.00(ACPV.2)C0, and GS1200-10v3 firmware versions through 1.00(ACPW.2)C0 could allow a LAN-based, unauthenticated attacker to read the system configuration from a log file via a crafted HTTP request.
Affected products
- Zyxel GS1200-10v3 Firmware: up to and including 1.00(ACPW.2)C0
- Zyxel GS1200-5hpv3 Firmware: up to and including 1.00(ACPU.2)C0
- Zyxel GS1200-5v3 Firmware: up to and including 1.00(ACPS.2)C0
- Zyxel GS1200-8hpv3 Firmware: up to and including 1.00(ACPV.2)C0
- Zyxel GS1200-8v3 Firmware: up to and including 1.00(ACPT.2)C0
Published 2026-05-26. Last modified 2026-07-24.