High severity8.8NVD Advisory· Published Aug 19, 2024· Updated Jun 17, 2026
CVE-2024-42633
CVE-2024-42633
Description
A Command Injection vulnerability exists in the do_upgrade_post function of the httpd binary in Linksys E1500 v1.0.06.001. As a result, an authenticated attacker can execute OS commands with root privileges.
Affected products
3- cpe:2.3:o:linksys:e1500_firmware:1.0.06.001:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.