CVE-2025-60691HIGH 8.8EPSS p51.1%

CVE-2025-60691CVE-2025-60691

Description

A stack-based buffer overflow exists in the httpd binary of Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz). The apply_cgi and block_cgi functions copy user-supplied input from the "url" CGI parameter into stack buffers (v36, v29) using sprintf without bounds checking. Because these buffers are allocated as single-byte variables, any non-empty input will trigger a buffer overflow. Remote attackers can exploit this vulnerability via crafted HTTP requests to execute arbitrary code or cause denial of service without authentication.

Scoring

CVSS 3.18.8 (HIGH)
VectorCVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS0.78% probability of exploitation · percentile 51.1% · 2026-06-18T12:00:27Z
Published2025-11-13
Last modified2025-11-17

Underlying weaknesses· 1

CWE-121

References

  1. http://linksys.com
  2. https://github.com/yifan20020708/SGTaint-0-day/blob/main/Linksys/Linksys-E1200/CVE-2025-60691.md
  3. https://www.linksys.com/

1

TypeTargetConfidenceTier
WeaknessStack-based Buffer Overflowcwe-1210%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
CVE-2025-60690
CVE
CVE-2025-60692
CVE
CVE-2025-60696
CVE
CVE-2025-6751
CVE
CVE-2025-6302
CVE
CVE-2025-9525
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.