Linksys RE6500
cpe:2.3:o:linksys:re6500_firmware:*:*:*:*:*:*:*
- 1.0.013.001
- 1.0.04.001
- 1.2.07.001
- 1.1.05.003
- 1.0.04.002
A command injection vulnerability has been identified in Linksys router models RE6250, RE6300, RE6350, RE6500, RE7000, and RE9000, all running firmware released prior to August 1, 2025. The vulnerability resides in the 'ipv6cmd' function of the '/goform/setIpv6' file, where several arguments can be manipulated to execute arbitrary operating system commands. This issue can be exploited remotely, and the details have been publicly disclosed.
Exploitation of this vulnerability allows for arbitrary command execution on the affected device's operating system.
To reproduce this vulnerability, send a POST request to '/goform/setIpv6' with crafted data that includes the desired command in the 'Ipv6PriDns' field. The router will execute the command, such as launching a reverse shell via Telnet.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.