E2000 Firmware
by Linksys
CVEs (3)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-27497 | Hig | 0.59 | 8.8 | 0.27 | Mar 1, 2024 | Linksys E2000 Ver.1.0.06 build 1 is vulnerable to authentication bypass via the position.js file. | ||
| CVE-2023-31741 | Hig | 0.47 | 7.2 | 0.02 | May 23, 2023 | There is a command injection vulnerability in the Linksys E2000 router with firmware version 1.0.06. If an attacker gains web management privileges, they can inject commands into the post request parameters wl_ssid, wl_ant, wl_rate, WL_atten_ctl, ttcp_num, ttcp_size in the httpd… | ||
| CVE-2023-31740 | Hig | 0.47 | 7.2 | 0.02 | May 23, 2023 | There is a command injection vulnerability in the Linksys E2000 router with firmware version 1.0.06. If an attacker gains web management privileges, they can inject commands into the post request parameters WL_atten_bb, WL_atten_radio, and WL_atten_ctl in the apply.cgi… |
- risk 0.59cvss 8.8epss 0.27
Linksys E2000 Ver.1.0.06 build 1 is vulnerable to authentication bypass via the position.js file.
- risk 0.47cvss 7.2epss 0.02
There is a command injection vulnerability in the Linksys E2000 router with firmware version 1.0.06. If an attacker gains web management privileges, they can inject commands into the post request parameters wl_ssid, wl_ant, wl_rate, WL_atten_ctl, ttcp_num, ttcp_size in the httpd…
- risk 0.47cvss 7.2epss 0.02
There is a command injection vulnerability in the Linksys E2000 router with firmware version 1.0.06. If an attacker gains web management privileges, they can inject commands into the post request parameters WL_atten_bb, WL_atten_radio, and WL_atten_ctl in the apply.cgi…