Linksys RE7000 v2.0.9, v2.0.11, and v2.0.15 have a command execution vulnerability in the "AccessControlList" parameter of the access control function point. An attacker can use the vulnerability to obtain device administrator rights.
| Software | From | Fixed in |
|---|---|---|
| linksys / re7000_firmware | 2.0.9 | 2.0.9.x |
| linksys / re7000_firmware | 2.0.11 | 2.0.11.x |
| linksys / re7000_firmware | 2.0.15 | 2.0.15.x |