Metrics
Affected Vendors & Products
Mon, 25 Aug 2025 21:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Sun, 24 Aug 2025 22:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Linksys
Linksys re6250 Linksys re6300 Linksys re6350 Linksys re6500 Linksys re7000 Linksys re9000 |
|
Vendors & Products |
Linksys
Linksys re6250 Linksys re6300 Linksys re6350 Linksys re6500 Linksys re7000 Linksys re9000 |
Sat, 23 Aug 2025 09:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A weakness has been identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. This issue affects the function RP_checkCredentialsByBBS of the file /goform/RP_checkCredentialsByBBS. This manipulation of the argument ssidhex/pwd causes stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way. | |
Title | Linksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 RP_checkCredentialsByBBS stack-based overflow | |
Weaknesses | CWE-119 CWE-121 |
|
References |
| |
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-08-23T09:32:06.481Z
Updated: 2025-08-25T18:13:23.246Z
Reserved: 2025-08-22T15:40:20.930Z
Link: CVE-2025-9359

Updated: 2025-08-25T18:09:49.330Z

Status : Awaiting Analysis
Published: 2025-08-23T10:15:29.897
Modified: 2025-08-25T20:24:45.327
Link: CVE-2025-9359

No data.