Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-9146

Опубликовано: 19 авг. 2025
Источник: nvd
CVSS3: 6.6
CVSS3: 8.1
CVSS2: 6.8
EPSS Низкий

Описание

A flaw has been found in Linksys E5600 1.1.0.26. The affected element is the function verify_gemtek_header of the file checkFw.sh of the component Firmware Handler. Executing manipulation can lead to risky cryptographic algorithm. The attack may be launched remotely. The attack requires a high level of complexity. The exploitability is described as difficult. The vendor was contacted early about this disclosure but did not respond in any way.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:linksys:e5600_firmware:1.1.0.26:*:*:*:*:*:*:*
cpe:2.3:h:linksys:e5600:-:*:*:*:*:*:*:*

EPSS

Процентиль: 44%
0.0022
Низкий

6.6 Medium

CVSS3

8.1 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-310
CWE-327

Связанные уязвимости

CVSS3: 6.6
github
6 месяцев назад

A flaw has been found in Linksys E5600 1.1.0.26. The affected element is the function verify_gemtek_header of the file checkFw.sh of the component Firmware Handler. Executing manipulation can lead to risky cryptographic algorithm. The attack may be launched remotely. The attack requires a high level of complexity. The exploitability is described as difficult. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS3: 6.6
fstec
6 месяцев назад

Уязвимость функции verify_gemtek_header() микропрограммного обеспечения маршрутизатора Linksys E5600, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании

EPSS

Процентиль: 44%
0.0022
Низкий

6.6 Medium

CVSS3

8.1 High

CVSS3

6.8 Medium

CVSS2

Дефекты

CWE-310
CWE-327