Vulnerability index

Browse CVEs

168 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

E8450 Firmware MEDIUM 5.5
CVE-2024-57541

Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (ipv6_protect_status) is copied to the stack…

No fix yet
Fix from $1,600 2025-01-21
E8450 Firmware MEDIUM 5.5
CVE-2024-57543

Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (dhcpstart_ip) is copied to the stack withou…

No fix yet
Fix from $1,600 2025-01-21
E8450 Firmware MEDIUM 5.5
CVE-2024-57544

Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (lan_ipaddr) is copied to the stack without …

No fix yet
Fix from $1,600 2025-01-21
E8450 Firmware MEDIUM 5.5
CVE-2024-57545

Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (hidden_dhcp_num) is copied to the stack wit…

No fix yet
Fix from $1,600 2025-01-21
E8450 Firmware HIGH 8.2
CVE-2024-57539

Linksys E8450 v1.2.00.360516 was discovered to contain a command injection vulnerability via userEmail.

No fix yet
Fix from $1,950 2025-01-21
E8450 Firmware HIGH 8.0
CVE-2024-57536

Linksys E8450 v1.2.00.360516 was discovered to contain a command injection vulnerability via wizard_status.

No fix yet
Fix from $1,950 2025-01-21
E8450 Firmware MEDIUM 6.5
CVE-2024-57538

Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (anonymous_protect_status) is copied to the …

No fix yet
Fix from $1,600 2025-01-21
E8450 Firmware MEDIUM 6.3
CVE-2024-57537

Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (page) is copied to the stack without length…

No fix yet
Fix from $1,600 2025-01-21
E7350 Firmware CRITICAL 9.8
CVE-2024-57223

Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_wps_gen_pincode function.

No fix yet
Fix from $2,300 2025-01-10
E7350 Firmware CRITICAL 9.8
CVE-2024-57224

Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_do_enr_pin_wps function.

No fix yet
Fix from $2,300 2025-01-10
E7350 Firmware CRITICAL 9.8
CVE-2024-57225

Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the devname parameter in the reset_wifi function.

No fix yet
Fix from $2,300 2025-01-10
E7350 Firmware HIGH 8.0
CVE-2024-57226

Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the iface parameter in the vif_enable function.

No fix yet
Fix from $1,950 2025-01-10
E7350 Firmware HIGH 8.0
CVE-2024-57227

Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_do_enr_pbc_wps function.

No fix yet
Fix from $1,950 2025-01-10
E7350 Firmware HIGH 8.0
CVE-2024-57228

Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the iface parameter in the vif_disable function.

No fix yet
Fix from $1,950 2025-01-10
E7350 Firmware MEDIUM 6.3
CVE-2024-57222

Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_cancel_wps function.

No fix yet
Fix from $1,600 2025-01-10
E3000 Firmware HIGH 8.0
CVE-2024-48286EPSS 12%

Linksys E3000 1.0.06.002_US is vulnerable to command injection via the diag_ping_start function.

No fix yet
Fix from $1,950 2024-11-21
Wrt54g Firmware CRITICAL 9.8
CVE-2024-8408

A vulnerability was found in Linksys WRT54G 4.21.5. It has been rated as critical. Affected by this issue is the function validate_services_port of t…

No fix yet
Fix from $2,300 2024-09-04
E1500 Firmware HIGH 8.8
CVE-2024-42633

A Command Injection vulnerability exists in the do_upgrade_post function of the httpd binary in Linksys E1500 v1.0.06.001. As a result, an authentica…

No fix yet
Fix from $1,950 2024-08-19
E2500 Firmware HIGH 8.0
CVE-2024-40495

A vulnerability was discovered in Linksys Router E2500 with firmware 2.0.00, allows authenticated attackers to execute arbitrary code via the hnd_par…

Mitigation only
Fix from $1,950 2024-07-24
Wrt54g Firmware HIGH 8.8
CVE-2024-41281

Linksys WRT54G v4.21.5 has a stack overflow vulnerability in get_merge_mac function.

Mitigation only
Fix from $1,950 2024-07-19
Mx6200 Firmware MEDIUM 5.3
CVE-2024-40750

Linksys Velop Pro 6E 1.0.8 MX6200_1.0.8.215731 and 7 1.0.10.215314 devices send cleartext Wi-Fi passwords over the public Internet during app-based i…

Mitigation only
Fix from $1,600 2024-07-09
Velop Whw0101 Firmware MEDIUM 6.8
CVE-2024-36821

Insecure permissions in Linksys Velop WiFi 5 (WHW01v1) 1.1.13.202617 allows attackers to escalate privileges from Guest to root.

No fix yet
Fix from $1,600 2024-06-11
E5600 Firmware HIGH 7.5
CVE-2023-30305

An issue discovered in Linksys E5600 routers allows attackers to hijack TCP sessions which could lead to a denial of service.

No fix yet
Fix from $1,950 2024-05-28
Ea7500 Firmware CRITICAL 9.8
CVE-2023-46012

Buffer Overflow vulnerability LINKSYS EA7500 3.0.1.207964 allows a remote attacker to execute arbitrary code via an HTTP request to the IGD UPnP.

No fix yet
Fix from $2,300 2024-05-07
E5600 Firmware HIGH 8.0
CVE-2024-33788

Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability via the PinCode parameter at /API/info form endpoint.

No fix yet
Fix from $1,950 2024-05-06
E5600 Firmware CRITICAL 9.8
CVE-2024-33789

Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability via the ipurl parameter at /API/info form endpoint.

No fix yet
Fix from $2,300 2024-05-03
Re7000 Firmware HIGH 8.8
CVE-2024-25852EPSS 17%

Linksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution vulnerability in the "AccessControlList" parameter of the access control functio…

No fix yet
Fix from $1,950 2024-04-11
E2000 Firmware HIGH 8.8
CVE-2024-27497EPSS 27%

Linksys E2000 Ver.1.0.06 build 1 is vulnerable to authentication bypass via the position.js file.

No fix yet
Fix from $1,950 2024-03-01
E1700 Firmware HIGH 8.0
CVE-2024-22544EPSS 9%

An issue was discovered in Linksys Router E1700 version 1.0.04 (build 3), allows authenticated attackers to execute arbitrary code via the setDateTim…

No fix yet
Fix from $1,950 2024-02-27
E1700 Firmware MEDIUM 6.1
CVE-2024-22543

An issue was discovered in Linksys Router E1700 1.0.04 (build 3), allows authenticated attackers to escalate privileges via a crafted GET request to …

No fix yet
Fix from $1,600 2024-02-27