Show filters
100 Total Results
Displaying 11-20 of 100
Sort by:
Attacker Value
Unknown
CVE-2022-43973
Disclosure Date: January 09, 2023 (last updated October 08, 2023)
An arbitrary code execution vulnerability exisits in Linksys WRT54GL Wireless-G Broadband Router with firmware <= 4.30.18.006. The Check_TSSI function within the httpd binary uses unvalidated user input in the construction of a system command. An authenticated attacker with administrator privileges can leverage this vulnerability over the network via a malicious POST request to /apply.cgi to execute arbitrary commands on the underlying Linux operating system as root.
0
Attacker Value
Unknown
CVE-2022-43972
Disclosure Date: January 09, 2023 (last updated October 08, 2023)
A null pointer dereference vulnerability exists in Linksys WRT54GL Wireless-G Broadband Router with firmware <= 4.30.18.006. A null pointer dereference in the soap_action function within the upnp binary can be triggered by an unauthenticated attacker via a malicious POST request invoking the AddPortMapping action.
0
Attacker Value
Unknown
CVE-2022-43971
Disclosure Date: January 09, 2023 (last updated October 08, 2023)
An arbitrary code exection vulnerability exists in Linksys WUMC710 Wireless-AC Universal Media Connector with firmware <= 1.0.02 (build3). The do_setNTP function within the httpd binary uses unvalidated user input in the construction of a system command. An authenticated attacker with administrator privileges can leverage this vulnerability over the network via a malicious GET or POST request to /setNTP.cgi to execute arbitrary commands on the underlying Linux operating system as root.
0
Attacker Value
Unknown
CVE-2022-43970
Disclosure Date: January 09, 2023 (last updated October 08, 2023)
A buffer overflow vulnerability exists in Linksys WRT54GL Wireless-G Broadband Router with firmware <= 4.30.18.006. A stack-based buffer overflow in the Start_EPI function within the httpd binary allows an authenticated attacker with administrator privileges to execute arbitrary commands on the underlying Linux operating system as root. This vulnerablity can be triggered over the network via a malicious POST request to /apply.cgi.
0
Attacker Value
Unknown
CVE-2022-35572
Disclosure Date: September 12, 2022 (last updated October 08, 2023)
On Linksys E5350 WiFi Router with firmware version 1.0.00.037 and lower, (and potentially other vendors/devices due to code reuse), the /SysInfo.htm URI does not require a session ID. This web page calls a show_sysinfo function which retrieves WPA passwords, SSIDs, MAC Addresses, serial numbers, WPS Pins, and hardware/firmware versions, and prints this information into the web page. This web page is visible when remote management is enabled. A user who has access to the web interface of the device can extract these secrets. If the device has remote management enabled and is connected directly to the internet, this vulnerability is exploitable over the internet without interaction.
0
Attacker Value
Unknown
CVE-2022-38555
Disclosure Date: August 28, 2022 (last updated October 08, 2023)
Linksys E1200 v1.0.04 is vulnerable to Buffer Overflow via ej_get_web_page_name.
0
Attacker Value
Unknown
CVE-2022-38132
Disclosure Date: August 23, 2022 (last updated October 08, 2023)
Command injection vulnerability in Linksys MR8300 router while Registration to DDNS Service. By specifying username and password, an attacker connected to the router's web interface can execute arbitrary OS commands. The username and password fields are not sanitized correctly and are used as URL construction arguments, allowing URL redirection to an arbitrary server, downloading an arbitrary script file, and eventually executing the file in the device. This issue affects: Linksys MR8300 Router 1.0.
0
Attacker Value
Unknown
CVE-2022-24372
Disclosure Date: April 27, 2022 (last updated October 07, 2023)
Linksys MR9600 devices before 2.0.5 allow attackers to read arbitrary files via a symbolic link to the root directory of a NAS SMB share.
0
Attacker Value
Unknown
CVE-2020-35715
Disclosure Date: December 26, 2020 (last updated February 22, 2025)
Belkin LINKSYS RE6500 devices before 1.0.012.001 allow remote authenticated users to execute arbitrary commands via shell metacharacters in a filename to the upload_settings.cgi page.
0
Attacker Value
Unknown
CVE-2020-35716
Disclosure Date: December 26, 2020 (last updated November 28, 2024)
Belkin LINKSYS RE6500 devices before 1.0.012.001 allow remote attackers to cause a persistent denial of service (segmentation fault) via a long /goform/langSwitch langSelectionOnly parameter.
0