CVE-2024-28283

There is stack-based buffer overflow vulnerability in pc_change_act function in Linksys E1000 router firmware version v.2.1.03 and before, leading to remote code execution.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:linksys:e1000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:linksys:e1000:-:*:*:*:*:*:*:*

History

10 Jun 2025, 15:52

Type Values Removed Values Added
CPE cpe:2.3:o:linksys:e1000_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:linksys:e1000:-:*:*:*:*:*:*:*
References () https://d05004.notion.site/Linksys-E1000-BOF-37b98eec45ea4fc991b9b5bea3db091d?pvs=4 - () https://d05004.notion.site/Linksys-E1000-BOF-37b98eec45ea4fc991b9b5bea3db091d?pvs=4 - Exploit, Third Party Advisory
First Time Linksys e1000
Linksys
Linksys e1000 Firmware

Information

Published : 2024-03-19 21:15

Updated : 2025-06-10 15:52


NVD link : CVE-2024-28283

Mitre link : CVE-2024-28283

CVE.ORG link : CVE-2024-28283


JSON object : View

Products Affected

linksys

  • e1000_firmware
  • e1000
CWE
CWE-121

Stack-based Buffer Overflow