PT-2026-86684 · Linksys · Re7000

·

CVE-2026-86299

·

Publicado

2026-09-07

·

Atualizado

2026-09-08

CVSS v2.0

9.0

Alta

VetorAV:N/AC:L/Au:S/C:C/I:C/A:C
A vulnerability was detected in Linksys RE7000 2.0.15. This affects the function platform event pingTest of the file /cgi-bin/json.cgi?PingTest of the component PingTest Handler. The manipulation of the argument pingTestIp/pingTestPktSize/pingTestTimes results in os command injection. The attack can be launched remotely. The exploit is now public and may be used.

Exploit

Correção

OS Command Injection

Command Injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2026-86299

Produtos afetados

Re7000