What is CVE-2026-13206?
CVE-2026-13206 is an OS Command Injection vulnerability in Zyxel WAH7601 devices. It allows remote command execution due to improper neutralization of special elements in OS commands. It is recommended to update the device firmware beyond version 20072026 to mitigate the issue.
Azərbaycanca: CVE-2026-13206, Zyxel WAH7601 cihazında aşkarlanan OS Command Injection zəifliyidir. Bu boşluq Xüsusi simvolların düzgün neytrallaşdırılmaması səbəbindən uzaqdan əmr icrasına imkan verir. Təsirə məruz qalmamaq üçün cihaz proqram təminatını (20072026 və əvvəlki versiyalar) ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-78
FAQ2
Which Zyxel device model is affected by CVE-2026-13206?
This vulnerability affects the Zyxel WAH7601 model.
Which firmware versions are vulnerable to this flaw?
Firmware version 20072026 and earlier are vulnerable to this OS Command Injection flaw.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.