Description
A missing authorization vulnerability in Zyxel GS1200-5v3 firmware versions through 1.00(ACPS.2)C0, GS1200-8v3 firmware versions through 1.00(ACPT.2)C0,  GS1200-5HPv3 firmware versions through 1.00(ACPU.2)C0, GS1200-8HPv3 firmware versions through 1.00(ACPV.2)C0, and GS1200-10v3 firmware versions through 1.00(ACPW.2)C0 could allow a LAN-based, unauthenticated attacker to read the system configuration from a log file via a crafted HTTP request.
Published: 2026-05-26
Score: 6.5 Medium
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A missing authorization check in Zyxel GS1200 series firmware allows an unauthenticated attacker on the local network to read the device configuration from a log file by sending a specially crafted HTTP request. The flaw is a classical missing authorization weakness that enables disclosure of sensitive network settings such as VLAN assignments, port bindings, and administrative credentials stored in the configuration logs. This can provide an attacker with the information needed to plan further attacks against the network.

Affected Systems

The vulnerability affects Zyxel GS1200 switches. For the GS1200-5v3 model, firmware versions up to 1.00(ACPS.2)C0 are susceptible. For the GS1200-8v3 model, firmware versions up to 1.00(ACPT.2)C0 are vulnerable. For the GS1200-5HPv3 model, firmware versions up to 1.00(ACPU.2)C0 are impacted. For the GS1200-8HPv3 model, firmware versions up to 1.00(ACPV.2)C0 are affected. For the GS1200-10v3 model, firmware versions up to 1.00(ACPW.2)C0 are at risk.

Risk and Exploitability

The CVSS score of 6.5 categorizes the flaw as a medium severity vulnerability. While the EPSS score is not available, the absence of a listing in the CISA KEV catalog indicates no known widespread exploitation at the time of this analysis. Attackers must be able to communicate with the switch over the local network, send the crafted HTTP request, and capture the resulting log file contents. No privilege escalation is required, but the resulting information disclosure could facilitate more sophisticated network attacks. The risk is therefore moderate, with impact limited to devices on the same LAN segment that expose the HTTP management interface.

Generated by OpenCVE AI on May 26, 2026 at 03:50 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Check the Zyxel security advisory for the latest firmware update that addresses the missing authorization flaw
  • Install the updated firmware on all affected GS1200 series switches
  • If a firmware update is not immediately available, restrict or disable the HTTP management interface on the LAN to prevent unauthorized HTTP traffic

Generated by OpenCVE AI on May 26, 2026 at 03:50 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 26 May 2026 04:15:00 +0000

Type Values Removed Values Added
Title Missing Authorization Allows LAN‑Based Unauthenticated Read of System Configuration

Tue, 26 May 2026 02:15:00 +0000

Type Values Removed Values Added
Description A missing authorization vulnerability in Zyxel GS1200-5v3 firmware versions through 1.00(ACPS.2)C0, GS1200-8v3 firmware versions through 1.00(ACPT.2)C0,  GS1200-5HPv3 firmware versions through 1.00(ACPU.2)C0, GS1200-8HPv3 firmware versions through 1.00(ACPV.2)C0, and GS1200-10v3 firmware versions through 1.00(ACPW.2)C0 could allow a LAN-based, unauthenticated attacker to read the system configuration from a log file via a crafted HTTP request.
Weaknesses CWE-862
References
Metrics cvssV3_1

{'score': 6.5, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: Zyxel

Published:

Updated: 2026-05-26T01:42:37.914Z

Reserved: 2026-03-25T02:49:26.644Z

Link: CVE-2026-4795

cve-icon Vulnrichment

No data.

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-05-26T04:00:13Z

Weaknesses