Linksys Router Vulnerability Allows Privilege Escalation via GET Request
CVE-2024-22543

Currently unrated

Key Information:

Vendor

Linksys

Vendor
CVE Published:
27 February 2024

What is CVE-2024-22543?

An identified vulnerability in the Linksys Router E1700 version 1.0.04 (build 3) permits authenticated attackers to escalate privileges. This occurs through the manipulation of crafted GET requests directed at the /goform/* URI or via the ExportSettings function. The flaw could potentially allow unauthorized changes to router settings, increasing the risk of unauthorized network access and exploitation.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.