CVE-2024-27497: High severity linksys e2000 firmware vulnerability
Published Mar 1, 2024
·Updated
Linksys E2000 Ver.1.0.06 build 1 is vulnerable to authentication bypass via the position.js file.
Affected Software
3 affected components
LinkSys E2000
All of the following
LinkSys E2000 Firmware=1.0.06
LinkSys E2000
Event History
Mar 1, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-27497?
CVE-2024-27497 is classified as a high-severity vulnerability due to its potential for authentication bypass.
2
How do I fix CVE-2024-27497?
To fix CVE-2024-27497, update the Linksys E2000 firmware to the latest version that addresses the vulnerability.
3
What is the impact of CVE-2024-27497 on Linksys E2000 devices?
The impact of CVE-2024-27497 allows unauthorized access to the device, compromising the network's security.
4
Who is affected by CVE-2024-27497?
Users of Linksys E2000 devices running the vulnerable firmware version 1.0.06 build 1 are affected by CVE-2024-27497.
5
Is CVE-2024-27497 being actively exploited?
There have been reports indicating that CVE-2024-27497 is being actively targeted in the wild.