# CVE-2013-3307

> Linksys E1000 devices through 2.1.02, E1200 devices before 2.0.05, and E3200 devices through 1.0.04 allow OS command injection via shell metacharacters in the apply.cgi ping_ip parameter on TCP port 52000.

- **CVSS:** 8.3 (HIGH)
- **EPSS:** 5.6%
- **CWE:** CWE-78

Canonical: https://intel.threadlinqs.com/cve/CVE-2013-3307
Full threat coverage + IOCs via the Threadlinqs MCP server (Purple tier): https://intel.threadlinqs.com/mcp
