Linksys RE6500
cpe:2.3:o:linksys:re6500_firmware:*:*:*:*:*:*:*
- 1.0.013.001
- 1.0.04.001
- 1.0.04.002
- 1.1.05.003
- 1.2.07.001
A stack-based buffer overflow vulnerability has been identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000, and RE9000 routers, all running specific firmware versions. The vulnerability arises in the 'RP_pingGatewayByBBS' function, where the 'ssidhex' parameter is not properly validated, allowing remote attackers to send overly long data that overwrites the stack and potentially executes arbitrary code. This issue can lead to a denial-of-service condition, causing the router to crash and disrupt normal service.
Exploitation of this vulnerability causes the router to crash, leading to a persistent denial-of-service condition where the device cannot provide services correctly.
To reproduce this vulnerability, send a POST request to '/goform/RP_pingGatewayByBBS' with the 'ssidhex' parameter containing a long string. The router will crash, demonstrating the buffer overflow condition.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.