Critical 0-Day RCE Vulnerability in Networking Devices Exposes 70,000+ Hosts

A critical zero-day vulnerability has been discovered in XSpeeder’s SXZOS firmware, affecting tens of thousands of SD-WAN appliances, edge routers, and smart TV controllers deployed globally. The vulnerability, designated PWN-25-01, enables unauthenticated remote code execution (RCE) with root-level privileges through a single HTTP GET request. XSpeeder, a Chinese networking vendor specializing in edge infrastructure, manufactures […]

The post Critical 0-Day RCE Vulnerability in Networking Devices Exposes 70,000+ Hosts appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: