Back to search
CVE-2026-25603
Published: Feb 24, 2026
Modified: Feb 24, 2026
PUBLISHED
Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Linksys MR9600, Linksys MX4200 allows that contents of a USB drive partition can be mounted in an arbitrary location of the file system. This may result in the execution of shell scripts in the context of a root user.This issue affects MR9600: 1.0.4.205530; MX4200: 1.0.13.210200.
| Vendor | Product | Versions |
|---|---|---|
Linksys | MR9600 | affected 1.0.4.205530 |
Linksys | MX4200 | affected 1.0.13.210200 |
Weaknesses (CWE)
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now