Vulnerability Description
An issue was discovered in Linksys Router E1700 version 1.0.04 (build 3), allows authenticated attackers to execute arbitrary code via the setDateTime function.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Linksys | E1700 Firmware | 1.0.04 |
| Linksys | E1700 | - |
Related Weaknesses (CWE)
References
- https://mat4mee.notion.site/Remote-Code-Execution-RCE-on-the-Linksys-Router-E170ExploitThird Party Advisory
- https://mat4mee.notion.site/Remote-Code-Execution-RCE-on-the-Linksys-Router-E170ExploitThird Party Advisory
FAQ
What is CVE-2024-22544?
CVE-2024-22544 is a vulnerability with a CVSS score of 8.0 (HIGH). An issue was discovered in Linksys Router E1700 version 1.0.04 (build 3), allows authenticated attackers to execute arbitrary code via the setDateTime function.
How severe is CVE-2024-22544?
CVE-2024-22544 has been rated HIGH with a CVSS base score of 8.0/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-22544?
Check the references section above for vendor advisories and patch information. Affected products include: Linksys E1700 Firmware, Linksys E1700.