CVE-2025-5444
A vulnerability has been found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001 and classified as critical.
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 14.9%, higher than 96% of all known CVEs. Patch or mitigate before the next change window.
Description
A vulnerability has been found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001 and classified as critical. Affected by this vulnerability is the function RP_UpgradeFWByBBS of the file /goform/RP_UpgradeFWByBBS. The manipulation of the argument type/ch/ssidhex/security/extch/pwd/mode/ip/nm/gw leads to os command injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
- CVSS 4.0
- 5.3 MEDIUMCVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/M
- EPSS
- 14.88% probability · 96th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-77, CWE-78
- Affected
- linksys/re9000 firmware · linksys/re6250 firmware · linksys/re6300 firmware · linksys/re6350 firmware · linksys/re7000 firmware · linksys/re6500 firmware
- Source
- cna@vuldb.com
References
- https://github.com/wudipjq/my_vuln/blob/main/Linksys/vuln_7/7.mdExploit, Third Party Advisory
- https://vuldb.com/?ctiid.310783Permissions Required
- https://vuldb.com/?id.310783Third Party Advisory, VDB Entry
- https://vuldb.com/?submit.584366Third Party Advisory, VDB Entry
- https://www.linksys.com/Product
- https://github.com/wudipjq/my_vuln/blob/main/Linksys/vuln_7/7.mdExploit, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.