Security
Headlines
HeadlinesLatestCVEs

Headline

CVE-2023-31740: CVE/Linksys_E2000_RCE.pdf at main · D2y6p/CVE

There is a command injection vulnerability in the Linksys E2000 router with firmware version 1.0.06. If an attacker gains web management privileges, they can inject commands into the post request parameters WL_atten_bb, WL_atten_radio, and WL_atten_ctl in the apply.cgi interface, thereby gaining shell privileges.

CVE
#vulnerability#web#git#pdf

Permalink

main

Switch branches/tags

Name already in use

A tag already exists with the provided branch name. Many Git commands accept both tag and branch names, so creating this branch may cause unexpected behavior. Are you sure you want to create this branch?

CVE/Linksys/CVE-2023-31740/Linksys_E2000_RCE.pdf****

Go to file

  • Go to file

  • Copy path

  • Copy permalink

Cannot retrieve contributors at this time

831 KB

Download

  • Open with Desktop
  • Download
  • Delete file

Sorry, something went wrong. Reload?

Sorry, we cannot display this file.

Sorry, this file is invalid so it cannot be displayed.

CVE: Latest News

CVE-2023-50976: Transactions API Authorization by oleiman · Pull Request #14969 · redpanda-data/redpanda
CVE-2023-6905
CVE-2023-6903
CVE-2023-6904
CVE-2023-3907