Successful exploitation of the vulnerability could allow an attacker with local network access to send a specially crafted URL to access certain administration functions without login credentials.
References
| Link | Resource |
|---|---|
| https://www.csa.gov.sg/alerts-and-advisories/alerts/al-2025-118/ | Third Party Advisory Exploit |
Configurations
Configuration 1 (hide)
| AND |
|
History
23 Dec 2025, 19:13
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:h:linksys:e9450-sg:-:*:*:*:*:*:*:* cpe:2.3:o:linksys:e9450-sg_firmware:1.2.00.052:*:*:*:*:*:*:* |
|
| First Time |
Linksys e9450-sg
Linksys e9450-sg Firmware Linksys |
|
| References | () https://www.csa.gov.sg/alerts-and-advisories/alerts/al-2025-118/ - Third Party Advisory, Exploit |
19 Dec 2025, 16:15
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | CWE-306 |
19 Dec 2025, 02:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-19 02:16
Updated : 2025-12-23 19:13
NVD link : CVE-2025-52692
Mitre link : CVE-2025-52692
CVE.ORG link : CVE-2025-52692
JSON object : View
Products Affected
linksys
- e9450-sg_firmware
- e9450-sg
CWE
CWE-306
Missing Authentication for Critical Function
