CVE-2024-40750: Linksys MBE7000 Firmware

Medium severity, CVSS 5.3. EPSS: 0.1% chance of exploitation in the next 30 days.

Linksys Velop Pro 6E 1.0.8 MX6200_1.0.8.215731 and 7 1.0.10.215314 devices send cleartext Wi-Fi passwords over the public Internet during app-based installation.

Affected products

  • Linksys MBE7000 Firmware: version 1.0.10.215314 only
  • Linksys MX6200 Firmware: version 1.0.8.215731 only

Published 2024-07-09. Last modified 2026-06-17.