CVE-2025-29226: Linksys e5600 Firmware

Medium severity, CVSS 6.3. EPSS: 0.7% chance of exploitation in the next 30 days.

In Linksys E5600 V1.1.0.26, the \usr\share\lua\runtime.lua file contains a command injection vulnerability in the runtime.pingTest function via the pt["count"] parameter.

Affected products

  • Linksys e5600 Firmware: version 1.1.0.26 only

Published 2025-03-21. Last modified 2026-06-17.