Vulnerability index

Browse CVEs

168 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Wrt54gl Firmware HIGH 7.5
CVE-2024-1404

A vulnerability was found in Linksys WRT54GL 4.30.18 and classified as problematic. Affected by this issue is some unknown functionality of the file …

Mitigation only
Fix from $1,950 2024-02-09
E2000 Firmware HIGH 7.2
CVE-2023-31740

There is a command injection vulnerability in the Linksys E2000 router with firmware version 1.0.06. If an attacker gains web management privileges, …

No fix yet
Fix from $1,950 2023-05-23
E2000 Firmware HIGH 7.2
CVE-2023-31741

There is a command injection vulnerability in the Linksys E2000 router with firmware version 1.0.06. If an attacker gains web management privileges, …

No fix yet
Fix from $1,950 2023-05-23
Wrt54gl Firmware HIGH 7.2
CVE-2023-31742EPSS 9%

There is a command injection vulnerability in the Linksys WRT54GL router with firmware version 4.30.18.006. If an attacker gains web management privi…

No fix yet
Fix from $1,950 2023-05-22
E8450 Firmware HIGH 8.8
CVE-2022-38841EPSS 11%

Linksys AX3200 1.1.00 is vulnerable to OS command injection by authenticated users via shell metacharacters to the diagnostics traceroute page.

No fix yet
Fix from $1,950 2023-04-16
E1200 Firmware CRITICAL 9.8
CVE-2022-38555EPSS 9%

Linksys E1200 v1.0.04 is vulnerable to Buffer Overflow via ej_get_web_page_name.

Mitigation only
Fix from $2,300 2022-08-28
Mr8300 Firmware HIGH 8.8
CVE-2022-38132

Command injection vulnerability in Linksys MR8300 router while Registration to DDNS Service. By specifying username and password, an attacker connect…

Mitigation only
Fix from $1,950 2022-08-24
Spa2102 Firmware HIGH 8.8
CVE-2009-5140

The SIP implementation on the Linksys SPA2102 phone adapter provides hashed credentials in a response to an invalid authentication challenge, which m…

Mitigation only
Fix from $1,950 2020-02-12
Wrt310n Firmware MEDIUM 5.4
CVE-2013-3067

Linksys WRT310Nv2 2.0.0.1 is vulnerable to XSS.

No fix yet
Fix from $1,600 2020-02-07
Ea6500 Firmware CRITICAL 9.8
CVE-2013-4658EPSS 9%

Linksys EA6500 has SMB Symlink Traversal allowing symbolic links to be created to locations outside of the Samba share.

No fix yet
Fix from $2,300 2019-10-25
Wrt1900acs Firmware HIGH 7.5
CVE-2019-7579

An issue was discovered on Linksys WRT1900ACS 1.0.3.187766 devices. An ability exists for an unauthenticated user to browse a confidential ui/1.0.99.…

No fix yet
Fix from $1,950 2019-06-17
Wag54g2 Firmware HIGH 8.8
CVE-2009-5157EPSS 6%

On Linksys WAG54G2 1.00.10 devices, there is authenticated command injection via shell metacharacters in the setup.cgi c4_ping_ipaddr variable.

No fix yet
Fix from $1,950 2019-06-11
Wrt1900acs Firmware HIGH 7.8
CVE-2019-7311

An issue was discovered on Linksys WRT1900ACS 1.0.3.187766 devices. A lack of encryption in how the user login cookie (admin-auth) is stored on a vic…

Mitigation only
Fix from $1,950 2019-06-06
E1200 Firmware HIGH 7.2
CVE-2018-3953EPSS 14%

Devices in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2500 Firmware Version 3.0.04) are susceptible to O…

No fix yet
Fix from $1,950 2018-10-17
E1200 Firmware HIGH 7.2
CVE-2018-3954

Devices in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2500 Firmware Version 3.0.04) are susceptible to O…

No fix yet
Fix from $1,950 2018-10-17
E1200 Firmware HIGH 7.2
CVE-2018-3955

An exploitable operating system command injection exists in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2…

No fix yet
Fix from $1,950 2018-10-17
Velop Firmware HIGH 8.8
CVE-2018-17208

Linksys Velop 1.1.2.187020 devices allow unauthenticated command injection, providing an attacker with full root access, via cgi-bin/zbtest.cgi or cg…

No fix yet
Fix from $1,950 2018-09-19
Ea6500 Firmware HIGH 7.1
CVE-2013-3066

Linksys EA6500 with firmware 1.1.28.147876 does not properly restrict access, which allows remote attackers to obtain sensitive information (clients …

No fix yet
Fix from $1,950 2014-09-29
Ea6500 Firmware MEDIUM 6.8
CVE-2013-3064

Open redirect vulnerability in ui/dynamic/unsecured.html in Linksys EA6500 with firmware 1.1.28.147876 allows remote attackers to redirect users to a…

No fix yet
Fix from $1,600 2014-09-29
Wrt54gl HIGH 10.0
CVE-2009-3341

Buffer overflow on the Linksys WRT54GL wireless router allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by …

No fix yet
Fix from $1,950 2009-09-24
Wap400n HIGH 10.0
CVE-2008-4594

Unspecified vulnerability in the SNMPv3 component in Linksys WAP4400N firmware 1.2.14 on the Marvell Semiconductor 88W8361P-BEM1 chipset has unknown …

No fix yet
Fix from $1,950 2008-10-17
Wap400n HIGH 7.1
CVE-2008-4441

The Marvell driver for the Linksys WAP4400N Wi-Fi access point with firmware 1.2.14 on the Marvell 88W8361P-BEM1 chipset, when WEP mode is enabled, d…

Mitigation only
Fix from $1,950 2008-10-14
Spa 2102 Phone Adapter HIGH 7.8
CVE-2008-2092

Linksys SPA-2102 Phone Adapter 3.3.6 allows remote attackers to cause a denial of service (crash) via a long ping packet ("ping of death"). NOTE: the…

No fix yet
Fix from $1,950 2008-05-06
Wag54gs HIGH 7.5
CVE-2007-6709

The Cisco Linksys WAG54GS Wireless-G ADSL Gateway with 1.01.03 and earlier firmware has "admin" as its default password for the "admin" account, whic…

No fix yet
Fix from $1,950 2008-03-13
Wrt54g HIGH 10.0
CVE-2008-1247EPSS 5%

The web interface on the Linksys WRT54g router with firmware 1.00.9 does not require credentials when invoking scripts, which allows remote attackers…

No fix yet
Fix from $1,950 2008-03-10
Wrt54g HIGH 10.0
CVE-2008-1268

The FTP server on the Linksys WRT54G 7 router with 7.00.1 firmware does not verify authentication credentials, which allows remote attackers to estab…

Mitigation only
Fix from $1,950 2008-03-10
Wrt54g HIGH 7.8
CVE-2008-1265

The Linksys WRT54G router allows remote attackers to cause a denial of service (device restart) via a long username and password to the FTP interface.

Mitigation only
Fix from $1,950 2008-03-10
Wrt54g HIGH 7.5
CVE-2008-1264

The Linksys WRT54G router has "admin" as its default FTP password, which allows remote attackers to access sensitive files including nvram.cfg, a fil…

Mitigation only
Fix from $1,950 2008-03-10
Wrt54gl HIGH 9.3
CVE-2008-0228

Cross-site request forgery (CSRF) vulnerability in apply.cgi in the Linksys WRT54GL Wireless-G Broadband Router with firmware 4.30.9 allows remote at…

Mitigation only
Fix from $1,950 2008-01-10
Spa941 HIGH 7.8
CVE-2007-2270EPSS 9%

The Linksys SPA941 VoIP Phone allows remote attackers to cause a denial of service (device reboot) via a 0377 (0xff) character in the From header, an…

No fix yet
Fix from $1,950 2007-04-25