Linksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution vulnerability in the "AccessControlList" parameter of the access control function point. An attacker can use the vulnerability to obtain device administrator rights.
History

Wed, 14 Aug 2024 21:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-04-11T00:00:00

Updated: 2024-08-14T19:45:30.332Z

Reserved: 2024-02-12T00:00:00

Link: CVE-2024-25852

cve-icon Vulnrichment

Updated: 2024-08-01T23:52:06.440Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-04-11T21:15:07.980

Modified: 2024-08-14T20:35:06.957

Link: CVE-2024-25852

cve-icon Redhat

No data.