轉發 台灣電腦網路危機處理暨協調中心 資安訊息警訊 TWCERTCC-200-202610-00000001
[內容說明]
【CVE-2026-7273】Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability (CVSS v3.1: 8.8)
【是否遭勒索軟體利用:未知】 Zyxel GS1900系列交換器的CGI程式存在堆疊型緩衝區溢位漏洞,可能使未經驗證的區域網路攻擊者透過特製的HTTP請求執行作業系統指令。
【CVE-2026-93952】Arista VeloCloud Orchestrator Improper Input Validation Vulnerability (CVSS v3.1: 10.0)
【是否遭勒索軟體利用:未知】 Arista VeloCloud Orchestrator本地部署版本存在輸入驗證不當漏洞,可能允許遠端攻擊者存取具特權的內部功能,可能危及Orchestrator及其所管理資料的機密性、完整性與可用性。
【CVE-2026-94127】F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability (CVSS v3.1: 9.8)
【是否遭勒索軟體利用:未知】 F5 BIG-IP APM存在堆積型緩衝區溢位漏洞。當虛擬伺服器設定存取原則及OAuth設定檔時,未經驗證的攻擊者可能利用此漏洞實現遠端程式碼執行。
【CVE-2026-93616】Check Point Multiple Products Path Traversal Vulnerability (CVSS v3.1: 9.8)
【是否遭勒索軟體利用:未知】 Check Point Security Management Server、Multi-Domain Security Management Server、Log Server、Multi-Domain Log Server及SmartEvent存在路徑遍歷漏洞,可能允許未經驗證的攻擊者上傳並執行任意指令碼。
【CVE-2026-85102】Check Point Multiple Products Improper Certificate Validation Vulnerability (CVSS v3.1: 9.8)
【是否遭勒索軟體利用:未知】 Check Point Security Gateway及使用Site-to-Site VPN或Remote Access VPN的Check Point Spark Firewall存在憑證驗證不當漏洞,可能允許未經驗證的遠端攻擊者在Gateway上執行任意程式碼。
【CVE-2026-5430】WSO2 Multiple Products Path Traversal Vulnerability (CVSS v3.1: 10.0)
【是否遭勒索軟體利用:未知】 WSO2 API Control Plane、API Manager、Traffic Manager及Universal Gateway存在路徑遍歷漏洞,可能允許不受限制的檔案上傳,進而導致遠端程式碼執行。
【CVE-2026-71362】Adobe Commerce and Magento Incorrect Authorization Vulnerability (CVSS v3.1: 9.1)
【是否遭勒索軟體利用:未知】 Adobe Commerce和Magento存在授權不當漏洞,可能允許攻擊者在無需任何使用者互動的情況下,以更高的權限存取敏感資源。
【CVE-2026-67279】Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability (CVSS v3.1: 6.5)
【是否遭勒索軟體利用:未知】 MikroTik RouterOS 存在行為流程強制執行不當漏洞,可能允許未經身分驗證的用戶端開啟工作階段通道並傳送執行請求。
【CVE-2026-65660】Microsoft SharePoint Code Injection Vulnerability (CVSS v3.1: 8.8)
【是否遭勒索軟體利用:未知】 Microsoft SharePoint 存在程式碼注入漏洞,可能允許經授權的攻擊者透過網路執行程式碼。
【CVE-2026-87902】WordPress Core Remote File Inclusion Vulnerability (CVSS v3.1: 8.1)
【是否遭勒索軟體利用:未知】 WordPress Core存在遠端檔案包含漏洞,可能允許未經驗證的攻擊者讓頁面範本解析機制包含可讀取的本機.php檔案,進而導致遠端程式碼執行。
【CVE-2026-88772】Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVSS v3.1: 8.1)
【是否遭勒索軟體利用:未知】 Citrix NetScaler ADC 和 NetScaler Gateway 存在記憶體緩衝區內操作限制不當漏洞,可能允許攻擊者遠端執行程式碼或導致阻斷服務。
【CVE-2026-88771】Citrix NetScaler Improper Input Validation Vulnerability (CVSS v3.1: 9.8)
【是否遭勒索軟體利用:未知】 Citrix NetScaler ADC 和 NetScaler Gateway存在輸入驗證不當漏洞,可能允許未經驗證的攻擊者執行任意指令。
[影響平台]
【CVE-2026-7273】請參考官方所列的影響版本 https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-stack-based-buffer-overflow-vulnerability-in-gs1900-series-switches-06-16-2026
【CVE-2026-93952】請參考官方所列的影響版本 https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183
【CVE-2026-94127】請參考官方所列的影響版本 https://my.f5.com/manage/s/article/K000162605
【CVE-2026-93616】請參考官方所列的影響版本 https://support.checkpoint.com/results/sk/sk1000171/
【CVE-2026-85102】請參考官方所列的影響版本 https://support.checkpoint.com/results/sk/sk1000117
【CVE-2026-5430】請參考官方所列的影響版本 https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2026-5328/
【CVE-2026-71362】請參考官方所列的影響版本 https://www.adobe.com/trust/security/products/commerce/apsb26-92.html
【CVE-2026-67279】請參考官方所列的影響版本 https://mikrotik.com/supportsec/september-2026-vulnerability/
【CVE-2026-65660】請參考官方所列的影響版本 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65660
【CVE-2026-87902】請參考官方所列的影響版本 https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-7hp8-65ch-5whp
【CVE-2026-88772】請參考官方所列的影響版本 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
【CVE-2026-88771】請參考官方所列的影響版本 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
[建議措施]
【CVE-2026-7273】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-stack-based-buffer-overflow-vulnerability-in-gs1900-series-switches-06-16-2026
【CVE-2026-93952】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183
【CVE-2026-94127】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://my.f5.com/manage/s/article/K000162605
【CVE-2026-93616】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://support.checkpoint.com/results/sk/sk1000171/
【CVE-2026-85102】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://support.checkpoint.com/results/sk/sk1000117
【CVE-2026-5430】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2026-5328/
【CVE-2026-71362】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://www.adobe.com/trust/security/products/commerce/apsb26-92.html
【CVE-2026-67279】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://mikrotik.com/supportsec/september-2026-vulnerability/
【CVE-2026-65660】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65660
【CVE-2026-87902】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-7hp8-65ch-5whp
【CVE-2026-88772】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
【CVE-2026-88771】 官方已針對漏洞釋出修復更新,請更新至相關版本 https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
Forwarded from Taiwan Computer Emergency Response Team / Coordination Center Security Information Alert TWCERTCC-200-202610-00000001
[Content Description]
【CVE-2026-7273】Zyxel GS1900 Series Switches Stack-Based Buffer Overflow Vulnerability (CVSS v3.1: 8.8)
【Whether Exploited by Ransomware: Unknown】 A stack-based buffer overflow vulnerability exists in the CGI program of Zyxel GS1900 series switches, which may allow unauthenticated attackers on the local network to execute OS commands through specially crafted HTTP requests.
【CVE-2026-93952】Arista VeloCloud Orchestrator Improper Input Validation Vulnerability (CVSS v3.1: 10.0)
【Whether Exploited by Ransomware: Unknown】 An improper input validation vulnerability exists in the on-premises version of Arista VeloCloud Orchestrator, which may allow remote attackers to access privileged internal functions, potentially compromising the confidentiality, integrity and availability of the Orchestrator and the data it manages.
【CVE-2026-94127】F5 BIG-IP APM Heap-based Buffer Overflow Vulnerability (CVSS v3.1: 9.8)
【Whether Exploited by Ransomware: Unknown】 A heap-based buffer overflow vulnerability exists in F5 BIG-IP APM. When a virtual server is configured with an access policy and OAuth profile, an unauthenticated attacker may exploit this vulnerability to achieve remote code execution.
【CVE-2026-93616】Check Point Multiple Products Path Traversal Vulnerability (CVSS v3.1: 9.8)
【Whether Exploited by Ransomware: Unknown】 A path traversal vulnerability exists in Check Point Security Management Server, Multi-Domain Security Management Server, Log Server, Multi-Domain Log Server and SmartEvent, which may allow unauthenticated attackers to upload and execute arbitrary scripts.
【CVE-2026-85102】Check Point Multiple Products Improper Certificate Validation Vulnerability (CVSS v3.1: 9.8)
【Whether Exploited by Ransomware: Unknown】 An improper certificate validation vulnerability exists in Check Point Security Gateway and Check Point Spark Firewall using Site-to-Site VPN or Remote Access VPN, which may allow unauthenticated remote attackers to execute arbitrary code on the Gateway.
【CVE-2026-5430】WSO2 Multiple Products Path Traversal Vulnerability (CVSS v3.1: 10.0)
【Whether Exploited by Ransomware: Unknown】 A path traversal vulnerability exists in WSO2 API Control Plane, API Manager, Traffic Manager and Universal Gateway, which may allow unrestricted file uploads, potentially leading to remote code execution.
【CVE-2026-71362】Adobe Commerce and Magento Incorrect Authorization Vulnerability (CVSS v3.1: 9.1)
【Whether Exploited by Ransomware: Unknown】 An incorrect authorization vulnerability exists in Adobe Commerce and Magento, which may allow attackers to access sensitive resources with elevated privileges without requiring any user interaction.
【CVE-2026-67279】Mikrotik RouterOS Improper Enforcement of Behavioral Workflow Vulnerability (CVSS v3.1: 6.5)
【Whether Exploited by Ransomware: Unknown】 An improper enforcement of behavioral workflow vulnerability exists in MikroTik RouterOS, which may allow unauthenticated clients to open session channels and send execution requests.
【CVE-2026-65660】Microsoft SharePoint Code Injection Vulnerability (CVSS v3.1: 8.8)
【Whether Exploited by Ransomware: Unknown】 A code injection vulnerability exists in Microsoft SharePoint, which may allow authorized attackers to execute code over the network.
【CVE-2026-87902】WordPress Core Remote File Inclusion Vulnerability (CVSS v3.1: 8.1)
【Whether Exploited by Ransomware: Unknown】 A remote file inclusion vulnerability exists in WordPress Core, which may allow unauthenticated attackers to cause the page template parsing mechanism to include readable local .php files, potentially leading to remote code execution.
【CVE-2026-88772】Citrix NetScaler Improper Restriction of Operations within the Bounds of a Memory Buffer Vulnerability (CVSS v3.1: 8.1)
【Whether Exploited by Ransomware: Unknown】 An improper restriction of operations within the bounds of a memory buffer vulnerability exists in Citrix NetScaler ADC and NetScaler Gateway, which may allow attackers to remotely execute code or cause a denial of service.
【CVE-2026-88771】Citrix NetScaler Improper Input Validation Vulnerability (CVSS v3.1: 9.8)
【Whether Exploited by Ransomware: Unknown】 An improper input validation vulnerability exists in Citrix NetScaler ADC and NetScaler Gateway, which may allow unauthenticated attackers to execute arbitrary commands.
[Impacted Platforms]
【CVE-2026-7273】Please refer to the affected versions listed by the vendor https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-stack-based-buffer-overflow-vulnerability-in-gs1900-series-switches-06-16-2026
【CVE-2026-93952】Please refer to the affected versions listed by the vendor https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183
【CVE-2026-94127】Please refer to the affected versions listed by the vendor https://my.f5.com/manage/s/article/K000162605
【CVE-2026-93616】Please refer to the affected versions listed by the vendor https://support.checkpoint.com/results/sk/sk1000171/
【CVE-2026-85102】Please refer to the affected versions listed by the vendor https://support.checkpoint.com/results/sk/sk1000117
【CVE-2026-5430】Please refer to the affected versions listed by the vendor https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2026-5328/
【CVE-2026-71362】Please refer to the affected versions listed by the vendor https://www.adobe.com/trust/security/products/commerce/apsb26-92.html
【CVE-2026-67279】Please refer to the affected versions listed by the vendor https://mikrotik.com/supportsec/september-2026-vulnerability/
【CVE-2026-65660】Please refer to the affected versions listed by the vendor https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65660
【CVE-2026-87902】Please refer to the affected versions listed by the vendor https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-7hp8-65ch-5whp
【CVE-2026-88772】Please refer to the affected versions listed by the vendor https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
【CVE-2026-88771】Please refer to the affected versions listed by the vendor https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
[Recommended Measures]
【CVE-2026-7273】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://www.zyxel.com/global/en/support/security-advisories/zyxel-security-advisory-for-stack-based-buffer-overflow-vulnerability-in-gs1900-series-switches-06-16-2026
【CVE-2026-93952】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://www.arista.com/en/support/advisories-notices/security-advisory/24765-security-advisory-0183
【CVE-2026-94127】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://my.f5.com/manage/s/article/K000162605
【CVE-2026-93616】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://support.checkpoint.com/results/sk/sk1000171/
【CVE-2026-85102】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://support.checkpoint.com/results/sk/sk1000117
【CVE-2026-5430】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://security.docs.wso2.com/en/latest/security-announcements/security-advisories/2026/WSO2-2026-5328/
【CVE-2026-71362】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://www.adobe.com/trust/security/products/commerce/apsb26-92.html
【CVE-2026-67279】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://mikrotik.com/supportsec/september-2026-vulnerability/
【CVE-2026-65660】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://msrc.microsoft.com/update-guide/vulnerability/CVE-2026-65660
【CVE-2026-87902】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://github.com/WordPress/wordpress-develop/security/advisories/GHSA-7hp8-65ch-5whp
【CVE-2026-88772】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096
【CVE-2026-88771】 The vendor has released a security update for the vulnerability. Please update to the relevant version https://support.citrix.com/support-home/kbsearch/article?articleNumber=CTX697096