Linksys Vulnerabilities and Affected Products
Vulnerabilities associated with E2000.
Products
Clear product- RE700058 vulnerabilities
- RE625057 vulnerabilities
- RE630057 vulnerabilities
- RE635057 vulnerabilities
- RE650057 vulnerabilities
- RE900057 vulnerabilities
- MR96008 vulnerabilities
- MX42006 vulnerabilities
- E17004 vulnerabilities
- e1700_firmware3 vulnerabilities
- e5600_firmware3 vulnerabilities
- ESeries E12003 vulnerabilities
- ESeries E25003 vulnerabilities
- WRT54GL3 vulnerabilities
- WRT54GL Wireless-G Broadband Router3 vulnerabilities
- E20002 vulnerabilities
- E32002 vulnerabilities
- EA75002 vulnerabilities
- FGW3000-AH2 vulnerabilities
- FGW3000-HK2 vulnerabilities
- re6500_firmware2 vulnerabilities
- wrt54g2 vulnerabilities
- E-Series Routers1 vulnerability
- E10001 vulnerability
- E1000 v11 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2025-34037CRITICAL | Linksys Routers E/WAG/WAP/WES/WET/WRT-SeriesAn OS command injection vulnerability exists in various models of E-Series Linksys routers via the /tmUnblock.cgi and /hndUnblock.cgi endpoints over HTTP on port 8080. The CGI scripts improperly process user-supplied input passed to the ttcp_ip parameter without sanitization, allowing unauthenticated attackers to inject shell commands. This vulnerability was reported to be exploited in the wild by the "TheMoon" worm in 2014 to deploy a MIPS ELF payload, enabling arbitrary code execution on the … | CVSS10.0v4.0 | EPSS85.8% | PoCs3 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2024-27497HIGH | Linksys E2000 Ver.1.0.06 build 1 Authentication BypassLinksys E2000 Ver.1.0.06 build 1 is vulnerable to authentication bypass via the position.js file. | CVSS8.8v3.1 | EPSS26.7% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |