Stack-based Buffer Overflow in Linksys E1200 v2 Routers
CVE-2025-60690
8.8HIGH
What is CVE-2025-60690?
A stack-based buffer overflow vulnerability exists in the get_merge_ipaddr function of the HTTP daemon on Linksys E1200 v2 routers. This flaw allows remote attackers to exploit the device by sending specially crafted HTTP requests. The function inadequately checks user-supplied CGI parameters, which can lead to the execution of arbitrary code or result in a denial of service. This issue underscores the importance of keeping router firmware updated to mitigate potential threats.