CVE-2025-52692
HIGHLinksys E9450-SG Firmware - Unauthenticated Access to Administration Functions via Crafted URL
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2025-52692. PoCs published by yt2w.
AI-analyzed exploit summary This repository contains a functional exploit for CVE-2025-52692, an authentication bypass vulnerability in Linksys E9450-SG routers. The exploit enables a hidden Telnet server with root access by sending an unauthenticated HTTP GET request to a specific endpoint.
Description
Successful exploitation of the vulnerability could allow an attacker with local network access to send a specially crafted URL to access certain administration functions without login credentials.
Exploits (1)
This repository contains a functional exploit for CVE-2025-52692, an authentication bypass vulnerability in Linksys E9450-SG routers. The exploit enables a hidden Telnet server with root access by sending an unauthenticated HTTP GET request to a specific endpoint.
References (1)
Scores
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H