← Vulnerability feed

Vulnerability record · CVE-2025-14133 · published 6 December 2025

CVE-2025-14133: Linksys re6500 firmware memory buffer overflow vulnerability

Linksys · Re6500 Firmware

A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. Affected by this vulnerability is the function AP_get_wireless_clientlist_setClientsName of the file mod_form.so. Performing manipulation of the argument clientsname_0 results in stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

7.4 CVSS 4.0 High EPSS 0.87% · top 42.8% CWE-119 · Memory buffer overflowCWE-121 · Stack-based buffer overflow
7.4CVSS 4.0 base score, v2 9.0
0.87%EPSS exploitation probability, 30 days
NoNot in CISA KEV
6Affected product versions listed by NVD
8References, 4 tagged exploit
25 Sep 2026Last modified by NVD

Description

A vulnerability was found in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. Affected by this vulnerability is the function AP_get_wireless_clientlist_setClientsName of the file mod_form.so. Performing manipulation of the argument clientsname_0 results in stack-based buffer overflow. The attack can be initiated remotely. The exploit has been made public and could be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

6 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2025-14133 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2020-35713Linksys re6500 firmware os command injection vulnerabilityBelkin LINKSYS RE6500 devices before 1.0.012.001 allow remote attackers to execute arbitrary commands or set a new password via shell metacharacters …EPSS 33%9.8CVE-2019-11535Linksys re6400 firmware command injection vulnerabilityUnsanitized user input in the web interface for Linksys WiFi extender products (RE6400 and RE6300 through 1.2.04.022) allows for remote command execu…EPSS 5.1%8.8CVE-2024-25852Linksys re7000 firmware improper access control vulnerabilityLinksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution vulnerability in the "AccessControlList" parameter of the access control functio…EPSS 17%8.8CVE-2020-35714Linksys re6500 firmware os command injection vulnerabilityBelkin LINKSYS RE6500 devices before 1.0.11.001 allow remote authenticated users to execute arbitrary commands via goform/systemCommand?command= in c…EPSS 2.7%8.8CVE-2020-35715Linksys re6500 firmware os command injection vulnerabilityBelkin LINKSYS RE6500 devices before 1.0.012.001 allow remote authenticated users to execute arbitrary commands via shell metacharacters in a filenam…EPSS 3.7%8.4CVE-2025-60696Linksys re7000 firmware stack-based buffer overflow vulnerabilityA stack-based buffer overflow vulnerability exists in the makeRequest.cgi binary of Linksys RE7000 routers (Firmware FW_v2.0.15_211230_1012). The arp…EPSS 0.23%7.5CVE-2020-35716Linksys re6500 firmware vulnerabilityBelkin LINKSYS RE6500 devices before 1.0.012.001 allow remote attackers to cause a persistent denial of service (segmentation fault) via a long /gofo…EPSS 4.0%7.4CVE-2025-14136Linksys re6500 firmware memory buffer overflow vulnerabilityA security flaw has been discovered in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.…EPSS 1.1%

Source: NIST National Vulnerability Database (record CVE-2025-14133), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.