CVE-2025-9575: Linksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 upload.cgi cgiMain os command injection
A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. This issue affects the function cgiMain of the file /cgi-bin/upload.cgi. Executing manipulation of the argument filename can lead to os command injection. The attack may be performed from a remote location. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-9575?
CVE-2025-9575 has a high severity rating due to its potential for remote code execution.
How do I fix CVE-2025-9575?
To fix CVE-2025-9575, users should update their Linksys RE6250, RE6300, RE6350, RE6500, RE7000, or RE9000 devices to the latest firmware version provided by Linksys.
What devices are affected by CVE-2025-9575?
CVE-2025-9575 affects the Linksys RE6250, RE6300, RE6350, RE6500, RE7000, and RE9000 models.
What kind of vulnerability is CVE-2025-9575?
CVE-2025-9575 is a remote code execution vulnerability caused by improper handling of the filename argument in the cgiMain function.
Can CVE-2025-9575 be exploited remotely?
Yes, CVE-2025-9575 can be exploited remotely by an attacker manipulating the filename argument.