openwrt kayıtları
openwrt üreticisine ait 145 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 4
- Düzeltme kaydı olan
- %2,1
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-787 Out-of-bounds Write43
- CWE-125 Out-of-bounds Read17
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')15
- CWE-121 Stack-based Buffer Overflow14
- CWE-122 Heap-based Buffer Overflow13
- CWE-20 Improper Input Validation3
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
145 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
53Planlayın | CVE-2024-20017Kavram kanıtı | In wlan service, there is a possible out of bounds write due to improper input validation.mediatek · software development kit · CWE-20 | Kritik9,8 | — | %46,6 | 3 Mar 2024 |
41Planlayın | CVE-2019-12272Kavram kanıtı | In OpenWrt LuCI through 0.10, the endpoints admin/status/realtime/bandwidth_status and admin/status/realtime/wireless_status of the web applopenwrt · luci · CWE-78 | Kritik9,8 | — | %7,4 | 23 May 2019 |
40Planlayın | CVE-2020-28951İstismar yok | libuci in OpenWrt before 18.06.9 and 19.x before 19.07.5 may encounter a use after free when using malicious package names.openwrt · openwrt · CWE-416 | Kritik9,8 | — | %1,8 | 19 Kas 2020 |
39İzleyin | CVE-2025-20654İstismar yok | In wlan service, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-787 | Kritik9,8 | — | %0,8 | 7 Nis 2025 |
39İzleyin | CVE-2025-20674İstismar yok | In wlan AP driver, there is a possible way to inject arbitrary packet due to a missing permission check.openwrt · openwrt · CWE-863 | Kritik9,8 | — | %0,8 | 1 Haz 2025 |
39İzleyin | CVE-2025-20681İstismar yok | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-787 | Kritik9,8 | — | %0,6 | 7 Tem 2025 |
39İzleyin | CVE-2025-20683İstismar yok | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-787 | Kritik9,8 | — | %0,5 | 7 Tem 2025 |
39İzleyin | CVE-2025-20682İstismar yok | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-787 | Kritik9,8 | — | %0,5 | 7 Tem 2025 |
38İzleyin | CVE-2024-54143İstismar yok | openwrt/asu allows build artifact poisoning via truncated SHA-256 hash and command injectionopenwrt · asu · CWE-328 | Kritik9,3 | — | %1,8 | 6 Ara 2024 |
38İzleyin | CVE-2026-30872İstismar yok | OpenWrt Project has a Stack-based Buffer Overflow vulnerability via IPv6 reverse DNS lookupopenwrt · openwrt · CWE-121 | Kritik9,5 | — | %1,1 | 19 Mar 2026 |
38İzleyin | CVE-2026-30871İstismar yok | OpenWrt Project has Stack-based Buffer Overflow in DNS PTR Queryopenwrt · openwrt · CWE-121 | Kritik9,5 | — | %0,7 | 19 Mar 2026 |
38İzleyin | CVE-2026-62948İstismar yok | OpenWrt odhcpd/LuCI: unauthenticated DHCPv6 client can inject lease-file lines via FQDN hostname → stored XSS in the LuCI admin UIopenwrt · openwrt · CWE-79 | Kritik9,6 | — | %0,6 | 15 Tem 2026 |
36İzleyin | CVE-2018-11116İstismar yok | OpenWrt mishandles access control in /etc/config/rpcd and the /usr/share/rpcd/acl.d files, which allows remote authenticated users to call aopenwrt · openwrt · CWE-732 | Yüksek8,8 | — | %2,4 | 19 Haz 2018 |
35İzleyin | CVE-2021-28961İstismar yok | applications/luci-app-ddns/luasrc/model/cbi/ddns/detail.lua in the DDNS package for OpenWrt 19.07 allows remote authenticated users to injecopenwrt · openwrt · CWE-78 | Yüksek8,8 | — | %1,5 | 21 Mar 2021 |
35İzleyin | CVE-2019-17367İstismar yok | OpenWRT firmware version 18.06.4 is vulnerable to CSRF via wireless/radio0.network1, wireless/radio1.network1, firewall, firewall/zones, firopenwrt · openwrt · CWE-352 | Yüksek8,8 | — | %0,6 | 18 Eki 2019 |
35İzleyin | CVE-2025-20685İstismar yok | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-122 | Yüksek8,8 | — | %0,3 | 7 Tem 2025 |
35İzleyin | CVE-2025-20686İstismar yok | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-122 | Yüksek8,8 | — | %0,3 | 7 Tem 2025 |
35İzleyin | CVE-2025-20711İstismar yok | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-787 | Yüksek8,8 | — | %0,3 | 14 Eki 2025 |
35İzleyin | CVE-2025-20709İstismar yok | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-120 | Yüksek8,8 | — | %0,3 | 14 Eki 2025 |
35İzleyin | CVE-2025-20710İstismar yok | In wlan AP driver, there is a possible out of bounds write due to an integer overflow.mediatek · software development kit · CWE-190 | Yüksek8,8 | — | %0,3 | 14 Eki 2025 |
35İzleyin | CVE-2025-20712İstismar yok | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-122 | Yüksek8,8 | — | %0,3 | 14 Eki 2025 |
35İzleyin | CVE-2026-20408İstismar yok | In wlan, there is a possible out of bounds write due to a heap buffer overflow.mediatek · software development kit · CWE-122 | Yüksek8,8 | — | %0,3 | 2 Şub 2026 |
35İzleyin | CVE-2025-20720İstismar yok | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-122 | Yüksek8,8 | — | %0,3 | 14 Eki 2025 |
35İzleyin | CVE-2025-20719İstismar yok | In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-121 | Yüksek8,8 | — | %0,3 | 14 Eki 2025 |
35İzleyin | CVE-2026-20430İstismar yok | In wlan AP FW, there is a possible out of bounds write due to an incorrect bounds check.mediatek · software development kit · CWE-787 | Yüksek8,8 | — | %0,2 | 2 Mar 2026 |
- CVE-2024-2001753Planlayın
In wlan service, there is a possible out of bounds write due to improper input validation.
KritikCVSS 9,8Kavram kanıtıEPSS %47mediatek · software development kit3 Mar 2024
- CVE-2019-1227241Planlayın
In OpenWrt LuCI through 0.10, the endpoints admin/status/realtime/bandwidth_status and admin/status/realtime/wireless_status of the web appl
KritikCVSS 9,8Kavram kanıtıEPSS %7openwrt · luci23 May 2019
- CVE-2020-2895140Planlayın
libuci in OpenWrt before 18.06.9 and 19.x before 19.07.5 may encounter a use after free when using malicious package names.
KritikCVSS 9,8İstismar yokEPSS %2openwrt · openwrt19 Kas 2020
- CVE-2025-2065439İzleyin
In wlan service, there is a possible out of bounds write due to an incorrect bounds check.
KritikCVSS 9,8İstismar yokEPSS %1mediatek · software development kit7 Nis 2025
- CVE-2025-2067439İzleyin
In wlan AP driver, there is a possible way to inject arbitrary packet due to a missing permission check.
KritikCVSS 9,8İstismar yokEPSS %1openwrt · openwrt1 Haz 2025
- CVE-2025-2068139İzleyin
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.
KritikCVSS 9,8İstismar yokEPSS %1mediatek · software development kit7 Tem 2025
- CVE-2025-2068339İzleyin
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.
KritikCVSS 9,8İstismar yokEPSS %1mediatek · software development kit7 Tem 2025
- CVE-2025-2068239İzleyin
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.
KritikCVSS 9,8İstismar yokEPSS %1mediatek · software development kit7 Tem 2025
- CVE-2024-5414338İzleyin
openwrt/asu allows build artifact poisoning via truncated SHA-256 hash and command injection
KritikCVSS 9,3İstismar yokEPSS %2openwrt · asu6 Ara 2024
- CVE-2026-3087238İzleyin
OpenWrt Project has a Stack-based Buffer Overflow vulnerability via IPv6 reverse DNS lookup
KritikCVSS 9,5İstismar yokEPSS %1openwrt · openwrt19 Mar 2026
- CVE-2026-3087138İzleyin
OpenWrt Project has Stack-based Buffer Overflow in DNS PTR Query
KritikCVSS 9,5İstismar yokEPSS %1openwrt · openwrt19 Mar 2026
- CVE-2026-6294838İzleyin
OpenWrt odhcpd/LuCI: unauthenticated DHCPv6 client can inject lease-file lines via FQDN hostname → stored XSS in the LuCI admin UI
KritikCVSS 9,6İstismar yokEPSS %1openwrt · openwrt15 Tem 2026
- CVE-2018-1111636İzleyin
OpenWrt mishandles access control in /etc/config/rpcd and the /usr/share/rpcd/acl.d files, which allows remote authenticated users to call a
YüksekCVSS 8,8İstismar yokEPSS %2openwrt · openwrt19 Haz 2018
- CVE-2021-2896135İzleyin
applications/luci-app-ddns/luasrc/model/cbi/ddns/detail.lua in the DDNS package for OpenWrt 19.07 allows remote authenticated users to injec
YüksekCVSS 8,8İstismar yokEPSS %2openwrt · openwrt21 Mar 2021
- CVE-2019-1736735İzleyin
OpenWRT firmware version 18.06.4 is vulnerable to CSRF via wireless/radio0.network1, wireless/radio1.network1, firewall, firewall/zones, fir
YüksekCVSS 8,8İstismar yokEPSS %1openwrt · openwrt18 Eki 2019
- CVE-2025-2068535İzleyin
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.
YüksekCVSS 8,8İstismar yokEPSS %0mediatek · software development kit7 Tem 2025
- CVE-2025-2068635İzleyin
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.
YüksekCVSS 8,8İstismar yokEPSS %0mediatek · software development kit7 Tem 2025
- CVE-2025-2071135İzleyin
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.
YüksekCVSS 8,8İstismar yokEPSS %0mediatek · software development kit14 Eki 2025
- CVE-2025-2070935İzleyin
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.
YüksekCVSS 8,8İstismar yokEPSS %0mediatek · software development kit14 Eki 2025
- CVE-2025-2071035İzleyin
In wlan AP driver, there is a possible out of bounds write due to an integer overflow.
YüksekCVSS 8,8İstismar yokEPSS %0mediatek · software development kit14 Eki 2025
- CVE-2025-2071235İzleyin
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.
YüksekCVSS 8,8İstismar yokEPSS %0mediatek · software development kit14 Eki 2025
- CVE-2026-2040835İzleyin
In wlan, there is a possible out of bounds write due to a heap buffer overflow.
YüksekCVSS 8,8İstismar yokEPSS %0mediatek · software development kit2 Şub 2026
- CVE-2025-2072035İzleyin
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.
YüksekCVSS 8,8İstismar yokEPSS %0mediatek · software development kit14 Eki 2025
- CVE-2025-2071935İzleyin
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check.
YüksekCVSS 8,8İstismar yokEPSS %0mediatek · software development kit14 Eki 2025
- CVE-2026-2043035İzleyin
In wlan AP FW, there is a possible out of bounds write due to an incorrect bounds check.
YüksekCVSS 8,8İstismar yokEPSS %0mediatek · software development kit2 Mar 2026