Vulnerabilidades em Linksys

93 resultados
Análise Vexday

O portfólio de vulnerabilidades da Linksys reúne 93 CVEs catalogadas, com taxa de exploração ativa abaixo da média geral do catálogo — nenhuma entrada no CISA KEV até o momento. No entanto, o cenário exige atenção: a CVE-2017-17411, associada a um EPSS de 0,8793, indica altíssima probabilidade de exploração ativa segundo modelos preditivos, e está entre as quatro CVEs com prova de conceito pública disponível. A falha mais recorrente é CWE-121 (stack-based buffer overflow), que historicamente favorece execução remota de código em dispositivos de rede como roteadores. Equipes responsáveis por ativos Linksys devem priorizar a revisão de CVEs críticas e com PoC pública, especialmente as mais antigas que podem não ter recebido correção ou ter sido esquecidas no ciclo de patch.

CVE-2025-8821MEDIUMLinksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 RP_setBasic os command injectionEPSS 8.3%CVE-2025-8830MEDIUMLinksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 setWan sub_3517C os command injectionEPSS 8.3%CVE-2025-8829MEDIUMLinksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 RP_setBasicAuto um_red os command injectionEPSS 8.3%CVE-2025-8827MEDIUMLinksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 RP_setBasicAuto um_inspect_cross_band os command injectionEPSS 8.3%CVE-2025-9482HIGHLinksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 portRangeForwardAdd stack-based overflowEPSS 8.2%CVE-2025-9244MEDIUMLinksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 addStaticRoute os command injectionEPSS 8.1%CVE-2025-8818MEDIUMLinksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 setLan setDFSSetting os command injectionEPSS 7.7%CVE-2025-5440MEDIUMLinksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 NTP os command injectionEPSS 6.6%CVE-2025-5439MEDIUMLinksys RE6500/RE6250/RE6300/RE6350/RE7000/RE9000 verifyFacebookLike os command injectionEPSS 6.6%CVE-2026-6992HIGHLinksys MR9600 JNAP Action run_central2.sh BTRequestGetSmartConnectStatus os command injectionEPSS 6.1%CVE-2025-52692HIGHBypass AuthenticationEPSS 5.6%CVE-2026-4558HIGHLinksys MR9600 SmartConnect.lua smartConnectConfigure os command injectionEPSS 4.9%CVE-2018-3955HIGHAn exploitable operating system command injection exists in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and LEPSS 4.8%CVE-2025-9392HIGHLinksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 qosClassifier stack-based overflowEPSS 4.0%CVE-2025-9363HIGHLinksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 portTriggerManageRule stack-based overflowEPSS 3.8%CVE-2018-3954HIGHDevices in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2500 Firmware Version 3.0.04) are susceptEPSS 3.4%CVE-2013-10058HIGHLinksys Routers apply.cgi Remote Command InjectionEPSS 3.0%CVE-2022-43973HIGHArbitrary code execution in Linksys WRT54GLEPSS 1.9%CVE-2022-43971HIGHArbitrary code execution in Linksys WUMC710EPSS 1.7%CVE-2025-9527HIGHLinksys E1700 QoSSetup stack-based overflowEPSS 1.4%