CVE-2025-29223: Command Injection
Published Mar 21, 2025
·Updated
Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability via the pt parameter in the traceRoute function.
Affected Software
3 affected components
LinkSys E5600
All of the following
LinkSys E5600 Firmware=1.1.0.26
LinkSys E5600
Event History
Mar 21, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-29223?
CVE-2025-29223 is classified as a medium severity command injection vulnerability.
2
How do I fix CVE-2025-29223?
To mitigate CVE-2025-29223, update the Linksys E5600 firmware to the latest available version provided by the vendor.
3
What systems are affected by CVE-2025-29223?
CVE-2025-29223 specifically affects Linksys E5600 version 1.1.0.26.
4
What type of vulnerability is CVE-2025-29223?
CVE-2025-29223 is a command injection vulnerability that can be exploited through the traceRoute function.
5
What could an attacker achieve by exploiting CVE-2025-29223?
An attacker exploiting CVE-2025-29223 could potentially execute arbitrary commands on the affected device.