Executive brief
A security vulnerability has been identified in the Zyxel NWA1100-N wireless access point, a device used to provide Wi-Fi connectivity in business environments. An attacker can exploit this flaw to crash the device remotely, causing a total loss of internet and network connectivity for connected users. Because this product has reached its end-of-life status, no official security patches are expected to be released.
Technical details
A classic buffer overflow (CWE-120) exists within the 'webs' binary of Zyxel NWA1100-N firmware version 1.00(AACE.1)C0. The vulnerability is located in several functions, including formWep(), formWlAc(), formPasswordSetup(), formUpgradeCert(), and formDelcert(), which fail to properly validate the size of input data before copying it to memory buffers. A remote, unauthenticated attacker can exploit this by sending a specially crafted HTTP request to the device's management interface. Successful exploitation results in a crash of the web service or the entire device, leading to a denial-of-service. As the product is end-of-life (EOL), Zyxel has not provided a patch.
Affected products
- Zyxel NWA1100-N 1.00(AACE.1)C0
Timeline
- 2026-05-12: disclosed: CVE published by Zyxel Corporation