CVE-2025-45487: Command Injection
Published May 6, 2025
·Updated
Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.InternetConnection function.
Affected Software
3 affected components
LinkSys E5600
All of the following
LinkSys E5600 Firmware=1.1.0.26
LinkSys E5600
Event History
May 6, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Dec 4, 57323
Event
via FIRST·09:33 PM
Frequently Asked Questions
1
What is the severity of CVE-2025-45487?
CVE-2025-45487 is classified as a high severity vulnerability due to the potential for command injection.
2
How do I fix CVE-2025-45487?
To fix CVE-2025-45487, update your Linksys E5600 firmware to the latest version provided by the vendor.
3
What does CVE-2025-45487 affect?
CVE-2025-45487 affects the Linksys E5600 router version 1.1.0.26.
4
What is the nature of the vulnerability in CVE-2025-45487?
CVE-2025-45487 involves a command injection vulnerability within the runtime InternetConnection function.
5
How can CVE-2025-45487 be exploited?
CVE-2025-45487 can be exploited by sending crafted requests to the affected device, allowing attackers to execute arbitrary commands.