First published: Tue Feb 04 2020(Updated: )
Cisco Linksys E4200 1.0.05 Build 7 routers contain a Local File Include Vulnerability which could allow remote attackers to obtain sensitive information or execute arbitrary code by sending a crafted URL request to the apply.cgi script using the submit_type parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linksys E4200v2 Firmware | =1.0.05 | |
Linksys E4200 v2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2013-2678.
The severity of CVE-2013-2678 is high (8.1).
Cisco Linksys E4200 1.0.05 Build 7 routers are affected by CVE-2013-2678.
Remote attackers can exploit CVE-2013-2678 by sending a crafted URL request to the apply.cgi script using the submit_type parameter.
Yes, there are some known references related to CVE-2013-2678: [1](http://packetstormsecurity.com/files/121551/Cisco-Linksys-E4200-Cross-Site-Scripting-Local-File-Inclusion.html), [2](http://www.exploit-db.com/exploits/25292), [3](http://www.securityfocus.com/bid/59710).