Metrics
Affected Vendors & Products
Tue, 12 Aug 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 12 Aug 2025 07:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Linksys
Linksys re6250 Linksys re6300 Linksys re6350 Linksys re6500 Linksys re7000 Linksys re9000 |
|
Vendors & Products |
Linksys
Linksys re6250 Linksys re6300 Linksys re6350 Linksys re6500 Linksys re7000 Linksys re9000 |
Mon, 11 Aug 2025 03:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This issue affects the function um_inspect_cross_band of the file /goform/RP_setBasicAuto. The manipulation of the argument staticGateway leads to os command injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Linksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 RP_setBasicAuto um_inspect_cross_band os command injection | |
Weaknesses | CWE-77 CWE-78 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-11T03:02:06.170Z
Updated: 2025-08-12T14:21:14.853Z
Reserved: 2025-08-10T07:53:59.145Z
Link: CVE-2025-8827

Updated: 2025-08-12T14:21:02.994Z

Status : Awaiting Analysis
Published: 2025-08-11T04:15:44.160
Modified: 2025-08-12T15:15:33.593
Link: CVE-2025-8827

No data.