← Vulnerability feed

Vulnerability record · CVE-2025-8825 · published 11 August 2025

CVE-2025-8825: Linksys re6250 firmware command injection vulnerability

Linksys · Re6250 Firmware

A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This affects the function RP_setBasicAuto of the file /goform/RP_setBasicAuto. The manipulation of the argument staticIp/staticNetmask leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

2.1 CVSS 4.0 Low EPSS 6.8% · top 6.2% CWE-77 · Command injectionCWE-78 · OS command injection
2.1CVSS 4.0 base score, v2 6.5
6.8%EPSS exploitation probability, 30 days
NoNot in CISA KEV
6Affected product versions listed by NVD
8References, 4 tagged exploit
17 Jun 2026Last modified by NVD

Description

A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This affects the function RP_setBasicAuto of the file /goform/RP_setBasicAuto. The manipulation of the argument staticIp/staticNetmask leads to os command injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N/E:P/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:

Affected products

6 vulnerable configurations from NVD's CPE data, grouped by vendor and product.

References

Track CVE-2025-8825 inside VULONE

Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.

Start free Open in platform

Related vulnerabilities

Same products first, then exploited flaws of the same weakness class.

9.8CVE-2020-35713Linksys re6500 firmware os command injection vulnerabilityBelkin LINKSYS RE6500 devices before 1.0.012.001 allow remote attackers to execute arbitrary commands or set a new password via shell metacharacters …EPSS 33%9.8CVE-2019-11535Linksys re6400 firmware command injection vulnerabilityUnsanitized user input in the web interface for Linksys WiFi extender products (RE6400 and RE6300 through 1.2.04.022) allows for remote command execu…EPSS 5.1%8.8CVE-2024-25852Linksys re7000 firmware improper access control vulnerabilityLinksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution vulnerability in the "AccessControlList" parameter of the access control functio…EPSS 17%8.8CVE-2020-35714Linksys re6500 firmware os command injection vulnerabilityBelkin LINKSYS RE6500 devices before 1.0.11.001 allow remote authenticated users to execute arbitrary commands via goform/systemCommand?command= in c…EPSS 2.7%8.8CVE-2020-35715Linksys re6500 firmware os command injection vulnerabilityBelkin LINKSYS RE6500 devices before 1.0.012.001 allow remote authenticated users to execute arbitrary commands via shell metacharacters in a filenam…EPSS 3.7%8.4CVE-2025-60696Linksys re7000 firmware stack-based buffer overflow vulnerabilityA stack-based buffer overflow vulnerability exists in the makeRequest.cgi binary of Linksys RE7000 routers (Firmware FW_v2.0.15_211230_1012). The arp…EPSS 0.23%7.5CVE-2020-35716Linksys re6500 firmware vulnerabilityBelkin LINKSYS RE6500 devices before 1.0.012.001 allow remote attackers to cause a persistent denial of service (segmentation fault) via a long /gofo…EPSS 4.0%7.4CVE-2025-14136Linksys re6500 firmware memory buffer overflow vulnerabilityA security flaw has been discovered in Linksys RE6500, RE6250, RE6300, RE6350, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.…EPSS 1.1%

Source: NIST National Vulnerability Database (record CVE-2025-8825), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.