Linksys Eseries E2500 vulnerabilities
3 known vulnerabilities affecting linksys/eseries_e2500.
Total CVEs
3
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH3
Vulnerabilities
Page 1 of 1
CVE-2018-3954HIGHCVSS 7.2vFirmware Version 3.0.042018-10-17
CVE-2018-3954 [HIGH] CWE-78 CVE-2018-3954: Devices in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2
Devices in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2500 Firmware Version 3.0.04) are susceptible to OS command injection vulnerabilities due to improper filtering of data passed to and retrieved from NVRAMData entered into the 'Router Name' input field through the web portal is submitted to apply.cgi as the
cvelistv5nvd
CVE-2018-3953HIGHCVSS 7.2vFirmware Version 3.0.042018-10-17
CVE-2018-3953 [HIGH] CWE-78 CVE-2018-3953: Devices in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2
Devices in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2500 Firmware Version 3.0.04) are susceptible to OS command injection vulnerabilities due to improper filtering of data passed to and retrieved from NVRAM. Data entered into the 'Router Name' input field through the web portal is submitted to apply.cgi as t
cvelistv5nvd
CVE-2018-3955HIGHCVSS 7.2vFirmware Version 3.0.042018-10-17
CVE-2018-3955 [HIGH] CWE-78 CVE-2018-3955: An exploitable operating system command injection exists in the Linksys ESeries line of routers (Lin
An exploitable operating system command injection exists in the Linksys ESeries line of routers (Linksys E1200 Firmware Version 2.0.09 and Linksys E2500 Firmware Version 3.0.04). Specially crafted entries to network configuration information can cause execution of arbitrary system commands, resulting in full control of the device. An attacker can send an
cvelistv5nvd