CVE-2026-27850 Details
Description
Due to an improperly configured firewall rule, the router will accept any connection on the WAN port with the source port 5222, exposing all services which are normally only accessible through the local network. This issue affects MR9600: 1.0.4.205530; MX4200: 1.0.13.210200.
A vulnerability exists in the Linksys MX4200 router, specifically in firmware version 1.0.13.210200, due to an improperly configured firewall rule. This misconfiguration allows the router to accept incoming connections on the WAN port from source port 5222, thereby exposing all services that are typically accessible only through the local network. The issue could potentially affect other Linksys models as well.
Users are advised to upgrade to firmware version 1.0.13.216602 to address this vulnerability.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Feb 25, 2026CISA-ADP
Assessed Feb 25, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.syss.de/fileadmin/dokumente/Publikationen/Advisories/SYSS-2025-014.txt | ENISA | AdvisoryExploitRemedy |
Weakness Enumeration
No weakness enumeration is available for this CVE.
Affected Products
| Product | Versions |
|---|---|
| Linksys MR9600 | All versions |
CPE
Remediation
| |
| Linksys MX4200 | 1.0.13.210200 |
CPE
Remediation
| |
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | ENISA |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Feb 25, 2026 | CVE Modified | CISA-ADP |
| Feb 25, 2026 | New CVE Received | ENISA |
Volerion