CVE-2020-35713: Linksys RE6500 Firmware

Critical severity, CVSS 9.8. EPSS: 32.9% chance of exploitation in the next 30 days.

Belkin LINKSYS RE6500 devices before 1.0.012.001 allow remote attackers to execute arbitrary commands or set a new password via shell metacharacters to the goform/setSysAdm page.

Affected products

  • Linksys RE6500 Firmware: before 1.0.012.001 (fixed in 1.0.012.001)

Published 2020-12-26. Last modified 2026-06-17.