PT-2025-30319 · Linksys+1 · Linksys E2500+1

John Doe

+1

·

Published

2025-07-21

·

Updated

2026-01-02

·

CVE-2025-44654

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Linksys E2500 version 3.0.04.002
Description The chroot local user option is enabled in the vsftpd configuration file. This could lead to unauthorized access to system files, privilege escalation, or use of the compromised server as a pivot point for internal network attacks.
Recommendations Disable the chroot local user option in the vsftpd configuration file.

Fix

LPE

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2025-44654

Affected Products

Linksys E2500
Vsftpd