CVE-2025-9525 | Linksys E1700 1.0.0.4.003 /goform/setWan DeviceName/lanIp stack-based overflow
A vulnerability has been found in Linksys E1700 1.0.0.4.003 and classified as critical. Affected by this vulnerability is the function setWan of the file /goform/setWan. This manipulation of the argument DeviceName/lanIp causes stack-based buffer overflow.
This vulnerability is handled as CVE-2025-9525. The attack can be initiated remotely. Additionally, an exploit exists.
The vendor was contacted early about this disclosure but did not respond in any way.