Linksys's vulnerability footprint centers on a broadly represented range of consumer and small-business networking devices, particularly mesh Wi-Fi extenders and routers such as the RE6500, RE7000, and RE6300 lines, which are widely deployed in residential and office networks. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity and a frequent tendency to acquire public exploit code, reflecting the appeal of internet-facing network appliances as targets for remote compromise and lateral movement. The exposure recurs across firmware releases through weakness classes including command injection, OS command injection, and buffer overflow conditions that are characteristic of embedded systems with limited memory protections and extensive command-handling interfaces. Defenders should prioritize patching these devices, particularly those exposed to untrusted networks, and inventory end-of-life models that may lack security updates; current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Linksys over time
Signals from CVEs in this vendor scope (223 CVEs).
223 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-17411CRITICAL This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Linksys WVBR0. Authentication is not required to exploit this vulnerability. The | Dec 21, 2017 | 9.8 | 89 | NO | YES |
CVE-2005-2799HIGH Buffer overflow in apply.cgi in Linksys WRT54G 3.01.03, 3.03.6, and possibly other versions before 4.20.7, allows remote attackers to execute arbitrary code via a long HTTP POST re | Sep 15, 2005 | 7.5 | 75 | NO | YES |
CVE-2020-35713CRITICAL Belkin LINKSYS RE6500 devices before 1.0.012.001 allow remote attackers to execute arbitrary commands or set a new password via shell metacharacters to the goform/setSysAdm page. | Dec 26, 2020 | 9.8 | 57 | NO | YES |
CVE-2024-27497HIGH Linksys E2000 Ver.1.0.06 build 1 is vulnerable to authentication bypass via the position.js file. | Mar 1, 2024 | 8.8 | 53 | NO | YES |
CVE-2025-9528HIGH A vulnerability was determined in Linksys E1700 1.0.0.4.003. This vulnerability affects the function systemCommand of the file /goform/systemCommand. Executing manipulation of the | Aug 27, 2025 | 7.2 | 51 | NO | NO |
CVE-2025-60690HIGH A stack-based buffer overflow exists in the get_merge_ipaddr function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz). The function concatena | Nov 13, 2025 | 8.8 | 45 | NO | YES |
CVE-2022-38841HIGH Linksys AX3200 1.1.00 is vulnerable to OS command injection by authenticated users via shell metacharacters to the diagnostics traceroute page. | Apr 16, 2023 | 8.8 | 44 | NO | YES |
CVE-2025-5447CRITICAL A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. It has been declared as critical. Th | Jun 2, 2025 | 9.8 | 43 | NO | NO |
CVE-2024-25852HIGH Linksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution vulnerability in the "AccessControlList" parameter of the access control function point. An attacker can use th | Apr 11, 2024 | 8.8 | 43 | NO | YES |
CVE-2025-5446CRITICAL A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. It has been classified as critical. | Jun 2, 2025 | 9.8 | 41 | NO | NO |
Signals from CVEs in this vendor scope (223 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Linksys.
Media articles that mention a CVE ID that affects a product developed by Linksys — matched by CVE ID, not by vendor name.