From thehackernews.com
![Zyxel Firewall, VPN Backdoor Account](https://thehackernews.com/images/-_EiJSyM-KAQ/X-8nSzeQkFI/AAAAAAAABYc/T-mOVeS8gSYC4gHCXGI7WotYpCddVzX1wCLcBGAsYHQ/s728-e1000/backdoor.jpg)
Zyxel has released a patch to address a critical vulnerability in its firmware concerning a hardcoded undocumented secret account that could be abused by an attacker to login with administrative privileges and compromise its networking devices.
The flaw, tracked as CVE-2020-29583 (CVSS score 7.8), affects version 4.60 present in wide-range of Zyxel devices, including Unified Security Gateway (USG), USG FLEX, ATP, and VPN firewall products.