Site icon TheCyberThrone

CVE-2025-1731 and CVE-2025-1732 impacts Zyxel Firewalls

Advertisements

Zyxel has disclosed two critical vulnerabilities, CVE-2025-1731 and CVE-2025-1732, affecting its USG FLEX H series firewalls. These vulnerabilities could allow authenticated local attackers to escalate privileges and compromise the security of affected devices.

1. CVE-2025-1731: Incorrect Permission Assignment

2. CVE-2025-1732: Improper Privilege Management

Affected Products

Mitigation Strategies

1. Apply Security Patches

2. Restrict Access

3. Monitor for Suspicious Activity

Acknowledgments

Zyxel credited Alessandro Sgreccia from HackerHood and Marco Ivaldi from HN Security for responsibly disclosing these vulnerabilities.

Exit mobile version