Vulnerabilities (CVE)

Filtered by vendor Linksys Subscribe
Total 223 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-57544 1 Linksys 2 E8450, E8450 Firmware 2026-06-17 N/A 5.5 MEDIUM
Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (lan_ipaddr) is copied to the stack without length verification.
CVE-2024-57543 1 Linksys 2 E8450, E8450 Firmware 2026-06-17 N/A 5.5 MEDIUM
Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (dhcpstart_ip) is copied to the stack without length verification.
CVE-2024-57542 1 Linksys 2 E8450, E8450 Firmware 2026-06-17 N/A 8.8 HIGH
Linksys E8450 v1.2.00.360516 was discovered to contain a command injection vulnerability via the field id_email_check_btn.
CVE-2024-57541 1 Linksys 2 E8450, E8450 Firmware 2026-06-17 N/A 5.5 MEDIUM
Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (ipv6_protect_status) is copied to the stack without length verification.
CVE-2024-57540 1 Linksys 2 E8450, E8450 Firmware 2026-06-17 N/A 6.5 MEDIUM
Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (action) is copied to the stack without length verification.
CVE-2024-57539 1 Linksys 2 E8450, E8450 Firmware 2026-06-17 N/A 8.2 HIGH
Linksys E8450 v1.2.00.360516 was discovered to contain a command injection vulnerability via userEmail.
CVE-2024-57538 1 Linksys 2 E8450, E8450 Firmware 2026-06-17 N/A 6.5 MEDIUM
Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (anonymous_protect_status) is copied to the stack without length verification.
CVE-2024-57537 1 Linksys 2 E8450, E8450 Firmware 2026-06-17 N/A 6.3 MEDIUM
Linksys E8450 v1.2.00.360516 was discovered to contain a buffer overflow vulnerability. The parsed field (page) is copied to the stack without length verification.
CVE-2024-57536 1 Linksys 2 E8450, E8450 Firmware 2026-06-17 N/A 8.0 HIGH
Linksys E8450 v1.2.00.360516 was discovered to contain a command injection vulnerability via wizard_status.
CVE-2024-57228 1 Linksys 2 E7350, E7350 Firmware 2026-06-17 N/A 8.0 HIGH
Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the iface parameter in the vif_disable function.
CVE-2024-57227 1 Linksys 2 E7350, E7350 Firmware 2026-06-17 N/A 8.0 HIGH
Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_do_enr_pbc_wps function.
CVE-2024-57226 1 Linksys 2 E7350, E7350 Firmware 2026-06-17 N/A 8.0 HIGH
Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the iface parameter in the vif_enable function.
CVE-2024-57225 1 Linksys 2 E7350, E7350 Firmware 2026-06-17 N/A 9.8 CRITICAL
Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the devname parameter in the reset_wifi function.
CVE-2024-57224 1 Linksys 2 E7350, E7350 Firmware 2026-06-17 N/A 9.8 CRITICAL
Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_do_enr_pin_wps function.
CVE-2024-57223 1 Linksys 2 E7350, E7350 Firmware 2026-06-17 N/A 9.8 CRITICAL
Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_wps_gen_pincode function.
CVE-2024-57222 1 Linksys 2 E7350, E7350 Firmware 2026-06-17 N/A 6.3 MEDIUM
Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_cancel_wps function.
CVE-2024-48286 1 Linksys 2 E3000, E3000 Firmware 2026-06-17 N/A 8.0 HIGH
Linksys E3000 1.0.06.002_US is vulnerable to command injection via the diag_ping_start function.
CVE-2024-42633 1 Linksys 2 E1500, E1500 Firmware 2026-06-17 N/A 8.8 HIGH
A Command Injection vulnerability exists in the do_upgrade_post function of the httpd binary in Linksys E1500 v1.0.06.001. As a result, an authenticated attacker can execute OS commands with root privileges.
CVE-2024-41281 1 Linksys 2 Wrt54g, Wrt54g Firmware 2026-06-17 N/A 8.8 HIGH
Linksys WRT54G v4.21.5 has a stack overflow vulnerability in get_merge_mac function.
CVE-2024-40750 1 Linksys 4 Mbe7000, Mbe7000 Firmware, Mx6200 and 1 more 2026-06-17 N/A 5.3 MEDIUM
Linksys Velop Pro 6E 1.0.8 MX6200_1.0.8.215731 and 7 1.0.10.215314 devices send cleartext Wi-Fi passwords over the public Internet during app-based installation.