PT-2025-22310 · Linksys · Linksys Fgw3000-Ah+1

Ch13Hh

·

Published

2025-04-26

·

Updated

2025-06-12

·

CVE-2025-5000

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linksys FGW3000-AH and FGW3000-HK versions up to 1.0.17.000000
Description A critical issue affects the control panel sw function of the /cgi-bin/sysconf.cgi file in the HTTP POST Request Handler component. The manipulation of the filename argument leads to command injection. This issue can be exploited remotely.
Recommendations For Linksys FGW3000-AH and FGW3000-HK versions up to 1.0.17.000000, consider disabling the control panel sw function as a temporary workaround until a patch is available. Restrict access to the /cgi-bin/sysconf.cgi file to minimize the risk of exploitation. Avoid using the filename argument in the affected HTTP POST Request Handler until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Special Elements Injection

Command Injection

Weakness Enumeration

Related Identifiers

BDU:2025-06203
CVE-2025-5000

Affected Products

Linksys Fgw3000-Ah
Linksys Fgw3000-Hk