CVE-2024-29292: Kasda KW6512 Firmware

Critical severity, CVSS 9.1. EPSS: 1% chance of exploitation in the next 30 days.

Multiple OS Command Injection vulnerabilities affecting Kasda LinkSmart Router KW6512 <= v1.3 enable an authenticated remote attacker to execute arbitrary OS commands via various cgi parameters.

Affected products

  • Kasda KW6512 Firmware: up to and including 1.3

Published 2024-11-20. Last modified 2026-06-17.