CVE-2025-5443 Information

Description

A vulnerability which was classified as critical was found in Linksys RE6500 RE6250 RE6300 RE6350 RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. Affected is the function wirelessAdvancedHidden of the file /goform/wirelessAdvancedHidden. The manipulation of the argument ExtChSelector/24GSelector/5GSelector leads to os command injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

Reference

https://github.com/wudipjq/my_vuln/blob/main/Linksys/vuln_6/6.md https://github.com/wudipjq/my_vuln/blob/main/Linksys/vuln_6/6.md https://vuldb.com/?ctiid.310782 https://vuldb.com/?id.310782 https://vuldb.com/?submit.584365 https://www.linksys.com/

Share on: