First published: Fri Jan 10 2025(Updated: )
Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_wps_gen_pincode function.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Linksys E7350 Firmware | ||
All of | ||
Linksys E7350 Firmware | =1.1.00.032 | |
Linksys E7350 Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-57223 has a critical severity rating due to the command injection vulnerability it poses.
To fix CVE-2024-57223, update your Linksys E7350 router to the latest firmware version provided by Linksys.
The impact of CVE-2024-57223 can allow an attacker to execute arbitrary commands on the affected device.
Yes, Linksys E7350 with firmware version 1.1.00.032 is affected by CVE-2024-57223.
CVE-2024-57223 is exploited through command injection via the ifname parameter in the apcli_wps_gen_pincode function.