In Linksys E5600 V1.1.0.26, the \usr\share\lua\runtime.lua file contains a command injection vulnerability in the runtime.pingTest function via the pt["pkgsize"] parameter.
2025-03-21T17:15:39.777
2025-04-01T20:28:58.697
Analyzed
CVSSv3.1: 6.3 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | linksys | e5600_firmware | 1.1.0.26 | Yes |
Hardware | linksys | e5600 | - | No |