Command Injection Vulnerability in Linksys E7350 Router
CVE-2024-57222

6.3MEDIUM

Key Information:

Vendor

Linksys

Vendor
CVE Published:
10 January 2025

What is CVE-2024-57222?

The Linksys E7350 router version 1.1.00.032 has a security flaw that allows attackers to execute arbitrary commands on the affected system. This vulnerability occurs through improper validation of the ifname parameter used in the apcli_cancel_wps function, presenting a significant risk to network integrity. Successful exploitation could lead to unauthorized access and manipulation of the router's functionalities, which may compromise user data and system performance.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

References

CVSS V3.1

Score:
6.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
Low
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

.