← Back to browse · API

CVE-2024-25852

Severity
HIGH
CVSS
8.8
EPSS
0.16519
Risk score
40.98
CISA KEV
No
PoC
No
Published
2024-04-11
Modified
2024-08-14
First seen
2026-08-07
Aliases
EUVD-2024-23159, GHSA-P5Q9-4VG3-6X89
Products
n/a:n/a n/a
Sources
euvd EUVD-2024-23159

Description

Linksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution vulnerability in the "AccessControlList" parameter of the access control function point. An attacker can use the vulnerability to obtain device administrator rights.

References