CVE-2026-86299 | Linksys RE7000 2.0.15 PingTest json.cgi?PingTest platform_event_pingTest pingTestIp/pingTestPktSize/pingTestTimes os command injection

SecurityVulns

A vulnerability classified as very critical was found in Linksys RE7000 2.0.15. This affects the function platform_event_pingTest of the file /cgi-bin/json.cgi?PingTest of the component PingTest Handler. The manipulation of the argument pingTestIp/pingTestPktSize/pingTestTimes results in os command injection.

This vulnerability is reported as CVE-2026-86299. The attack can be launched remotely. Moreover, an exploit is present.VulDB Recent EntriesRead More