PT-2026-21925 · Linksys · Linksys Mr9600+1

Christian Zä​Ske

·

Published

2026-02-25

·

Updated

2026-02-28

·

CVE-2026-27846

CVSS v3.1

6.2

Medium

VectorAV:L/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions Linksys MR9600 version 1.0.4.205530 Linksys MX4200 version 1.0.13.210200
Description A lack of proper authentication allows a user with physical access to the device to misuse the mesh functionality. This can lead to gaining access to sensitive information, including the administrator password for the web interface and Wi-Fi passwords.
Recommendations Update Linksys MR9600 to a version newer than 1.0.4.205530. Update Linksys MX4200 to a version newer than 1.0.13.210200.

Fix

Missing Authentication

Weakness Enumeration

Related Identifiers

CVE-2026-27846

Affected Products

Linksys Mr9600
Linksys Mx4200