RE7000 vulnerability

A vulnerability was detected in Linksys RE7000 2.0.15. This affects the function platform_event_pingTest of the file /cgi-bin/json.cgi?PingTest of the component PingTest Handler. The manipulation of the argument pingTestIp/pingTestPktSize/pingTestTimes results in os command injection. The attack can be launched remotely. The exploit is now public and may be used.

Published 7 Sep 2026Updated 11 Sep 20266 sources
CVSS 8.6

Record history

Record created from the first normalized source observation.
Metadata and source references refreshed.