DEV Community

Cover image for Critical Authentication Bypass Flaws Reported in ZLAN Industrial Gateways
BeyondMachines for BeyondMachines

Posted on • Originally published at beyondmachines.net

Critical Authentication Bypass Flaws Reported in ZLAN Industrial Gateways

Summary

ZLAN5143D industrial gateways contain two critical vulnerabilities (CVE-2026-25084 and CVE-2026-24789) that allow unauthenticated remote attackers to bypass security and reset device passwords. The vendor has not yet responded to these issues and there are no patches.

Take Action:

If you use ZLAN5143D gateways, make sure they are isolated from the internet and accessible only from trusted networks. Since the vendor hasn't provided a patch, network isolation and VPN-only access are your only defense. Reach out to the vendor for patches, and if no patches are available, start planning a replacement.


Read the full article on BeyondMachines


This article was originally published on BeyondMachines

Top comments (0)