CVE-2024-40495

Severity CVSS v4.0:
Pending analysis
Type:
CWE-94 Code Injection
Publication date:
24/07/2024
Last modified:
02/01/2026

Description

A vulnerability was discovered in Linksys Router E2500 with firmware 2.0.00, allows authenticated attackers to execute arbitrary code via the hnd_parentalctrl_unblock function.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:linksys:e2500_firmware:2.0.00:*:*:*:*:*:*:*
cpe:2.3:h:linksys:e2500:-:*:*:*:*:*:*:*