PT-2024-28878 · Linksys · Linksys Router E2500

Published

2024-07-24

·

Updated

2026-01-02

·

CVE-2024-40495

CVSS v3.1

8.0

High

VectorAV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linksys Router E2500 version 2.0.00
Description A vulnerability was discovered that allows authenticated attackers to execute arbitrary code via the hnd parentalctrl unblock function.
Recommendations For Linksys Router E2500 version 2.0.00, consider disabling the hnd parentalctrl unblock function as a temporary workaround until a patch is available.

Exploit

Fix

Code Injection

Weakness Enumeration

Related Identifiers

BDU:2026-01053
CVE-2024-40495

Affected Products

Linksys Router E2500