CVE-2024-25852
Severity CVSS v4.0:
Pending analysis
Type:
CWE-284
Improper Access Control
Publication date:
11/04/2024
Last modified:
14/08/2024
Description
Linksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution vulnerability in the "AccessControlList" parameter of the access control function point. An attacker can use the vulnerability to obtain device administrator rights.
Impact
Base Score 3.x
8.80
Severity 3.x
HIGH