CVE-2024-25852: Linksys RE7000 Firmware
High severity, CVSS 8.8. EPSS: 16.5% chance of exploitation in the next 30 days.
Linksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution vulnerability in the "AccessControlList" parameter of the access control function point. An attacker can use the vulnerability to obtain device administrator rights.
Affected products
- Linksys RE7000 Firmware: version 2.0.9 only; version 2.0.11 only; version 2.0.15 only
Published 2024-04-11. Last modified 2026-06-17.