realtek kayıtları
realtek üreticisine ait 77 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 3 · %3,9
- Silahlaştırılmış
- 4 · %5,2
- Pre-auth RCE
- 8
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- 116 gün
Tekrar eden sınıflar
- CWE-121 Stack-based Buffer Overflow16
- CWE-787 Out-of-bounds Write7
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')6
- CWE-122 Heap-based Buffer Overflow5
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')5
- CWE-400 Uncontrolled Resource Consumption3
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWETüm kayıtlar
77 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
99Hemen | CVE-2014-8361Silahlaştırılmış | The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request, as exploirealtek · realtek sdk | Kritik9,8 | KEV | %100,0 | 1 May 2015 |
99Hemen | CVE-2021-35394Silahlaştırılmış | Realtek Jungle SDK version v2.x up to v3.4.14B provides a diagnostic tool called 'MP Daemon' that is usually compiled as 'UDPServer' binary.realtek · rtl819x jungle software development kit · CWE-78 | Kritik9,8 | KEV | %99,9 | 16 Ağu 2021 |
98Hemen | CVE-2021-35395Silahlaştırılmış | Realtek Jungle SDK version v2.x up to v3.4.14B provides an HTTP web server exposing a management interface that can be used to configure therealtek · rtl819x jungle software development kit | Kritik9,8 | KEV | %98,0 | 16 Ağu 2021 |
60Bu hafta | CVE-2021-35393İstismar yok | Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both UPnP and SSDP protocols.realtek · rtl819x jungle software development kit · CWE-787 | Kritik9,8 | — | %70,3 | 16 Ağu 2021 |
55Planlayın | CVE-2021-35392Kavram kanıtı | Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both UPnP and SSDP protocols.realtek · rtl819x jungle software development kit · CWE-787 | Yüksek7,5 | — | %83,2 | 16 Ağu 2021 |
50Planlayın | CVE-2022-27255Kavram kanıtı | In Realtek eCos RSDK 1.5.7p1 and MSDK 4.9.4p1, the SIP ALG function that rewrites SDP data has a stack-based buffer overflow.realtek · ecos rsdk firmware · CWE-20 | Kritik9,8 | — | %37,1 | 1 Ağu 2022 |
48Planlayın | CVE-2008-5664Silahlaştırılmış | Stack-based buffer overflow in Realtek Media Player (aka Realtek Sound Manager, RtlRack, or rtlrack.exe) 1.15.0.0 allows remote attackers torealtek · realtek media player · CWE-119 | Kritik9,3 | — | %36,2 | 18 Ara 2008 |
39İzleyin | CVE-2021-27372İstismar yok | Realtek xPON RTL9601D SDK 1.9 stores passwords in plaintext which may allow attackers to possibly gain access to the device with root permisrealtek · xpon rtl9601d software development kit · CWE-522 | Kritik9,8 | — | %1,6 | 25 Mar 2021 |
39İzleyin | CVE-2021-39306İstismar yok | A stack buffer overflow was discovered on Realtek RTL8195AM device before 2.0.10, it exists in the client code when an attacker sends a big realtek · rtl8195am firmware · CWE-787 | Kritik9,8 | — | %1,3 | 22 Ara 2021 |
39İzleyin | CVE-2021-43573İstismar yok | A buffer overflow was discovered on Realtek RTL8195AM devices before 2.0.10.realtek · rtl8195am firmware · CWE-120 | Kritik9,8 | — | %1,1 | 11 Kas 2021 |
35İzleyin | CVE-2022-29558İstismar yok | Realtek rtl819x-SDK before v3.6.1 allows command injection over the web interface.realtek · rtl819x software development kit · CWE-77 | Yüksek8,8 | — | %1,3 | 28 Tem 2022 |
35İzleyin | CVE-2024-40431Kavram kanıtı | A lack of input validation in Realtek SD card reader driver before 10.0.26100.21374 through the implementation of the IOCTL_SCSI_PASS_THROUG | Yüksek8,8 | — | %1,3 | 23 Eki 2024 |
35İzleyin | CVE-2020-12773İstismar yok | Realtek ADSL/PON Modem SoC - Security Misconfigurationrealtek · adsl router soc firmware | Yüksek8,8 | — | %1,2 | 8 Haz 2020 |
35İzleyin | CVE-2023-47677İstismar yok | A cross-site request forgery (csrf) vulnerability exists in the boa CSRF protection functionality of Realtek rtl819x Jungle SDK v3.4.11.realtek · rtl819x jungle software development kit · CWE-352 | Yüksek8,8 | — | %0,4 | 8 Tem 2024 |
35İzleyin | CVE-2025-8299İstismar yok | Realtek rtl81xx SDK Wi-Fi Driver MgntActSet_TEREDO_SET_RS_PACKET Heap-based Buffer Overflow Local Privilege Escalation Vulnerabilityrealtek · wi-fi usb driver · CWE-122 | Yüksek8,8 | — | %0,2 | 2 Eyl 2025 |
35İzleyin | CVE-2025-8300İstismar yok | Realtek rtl81xx SDK Wi-Fi Driver rtwlanu Heap-based Buffer Overflow Local Privilege Escalation Vulnerabilityrealtek · wi-fi usb driver · CWE-122 | Yüksek8,8 | — | %0,2 | 2 Eyl 2025 |
35İzleyin | CVE-2025-8302İstismar yok | Realtek rtl81xx SDK Wi-Fi Driver rtwlanu Heap-based Buffer Overflow Local Privilege Escalation Vulnerabilityrealtek · wi-fi usb driver · CWE-122 | Yüksek8,8 | — | %0,2 | 2 Eyl 2025 |
33İzleyin | CVE-2019-19822Kavram kanıtı | A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attackers to retrieve the corealtek · rtk 11n ap firmware · CWE-306 | Yüksek7,5 | — | %8,7 | 27 Oca 2020 |
33İzleyin | CVE-2020-25855İstismar yok | The function AES_UnWRAP() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and excluding 2.08) does not realtek · rtl8195a firmware · CWE-121 | Yüksek8,1 | — | %2,6 | 3 Şub 2021 |
33İzleyin | CVE-2020-25854İstismar yok | The function DecWPA2KeyData() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and excluding 2.08) does realtek · rtl8195a firmware · CWE-121 | Yüksek8,1 | — | %2,6 | 3 Şub 2021 |
33İzleyin | CVE-2020-25856İstismar yok | The function DecWPA2KeyData() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and excluding 2.08) does realtek · rtl8195a firmware · CWE-121 | Yüksek8,1 | — | %2,2 | 3 Şub 2021 |
33İzleyin | CVE-2020-27302İstismar yok | A stack buffer overflow in Realtek RTL8710 (and other Ameba-based devices) can lead to remote code execution via the "memcpy" function, whenrealtek · rtl8710c firmware · CWE-787 | Yüksek8,0 | — | %2,0 | 4 Haz 2021 |
33İzleyin | CVE-2020-27301Kavram kanıtı | A stack buffer overflow in Realtek RTL8710 (and other Ameba-based devices) can lead to remote code execution via the "AES_UnWRAP" function, realtek · rtl8710c firmware · CWE-787 | Yüksek8,0 | — | %2,0 | 4 Haz 2021 |
33İzleyin | CVE-2024-33224İstismar yok | An issue in the component rtkio64.sys of Realtek Semiconductor Corp Realtek lO Driver v1.008.0823.2017 allows attackers to escalate privilegCWE-269 | Yüksek8,4 | — | %0,2 | 22 May 2024 |
32İzleyin | CVE-2019-19823Kavram kanıtı | A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext administrative passwords realtek · rtk 11n ap firmware · CWE-522 | Yüksek7,5 | — | %6,4 | 27 Oca 2020 |
- CVE-2014-836199Hemen
The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request, as exploi
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100realtek · realtek sdk1 May 2015
- CVE-2021-3539499Hemen
Realtek Jungle SDK version v2.x up to v3.4.14B provides a diagnostic tool called 'MP Daemon' that is usually compiled as 'UDPServer' binary.
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %100realtek · rtl819x jungle software development kit16 Ağu 2021
- CVE-2021-3539598Hemen
Realtek Jungle SDK version v2.x up to v3.4.14B provides an HTTP web server exposing a management interface that can be used to configure the
KritikCVSS 9,8KEVSilahlaştırılmışEPSS %98realtek · rtl819x jungle software development kit16 Ağu 2021
- CVE-2021-3539360Bu hafta
Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both UPnP and SSDP protocols.
KritikCVSS 9,8İstismar yokEPSS %70realtek · rtl819x jungle software development kit16 Ağu 2021
- CVE-2021-3539255Planlayın
Realtek Jungle SDK version v2.x up to v3.4.14B provides a 'WiFi Simple Config' server that implements both UPnP and SSDP protocols.
YüksekCVSS 7,5Kavram kanıtıEPSS %83realtek · rtl819x jungle software development kit16 Ağu 2021
- CVE-2022-2725550Planlayın
In Realtek eCos RSDK 1.5.7p1 and MSDK 4.9.4p1, the SIP ALG function that rewrites SDP data has a stack-based buffer overflow.
KritikCVSS 9,8Kavram kanıtıEPSS %37realtek · ecos rsdk firmware1 Ağu 2022
- CVE-2008-566448Planlayın
Stack-based buffer overflow in Realtek Media Player (aka Realtek Sound Manager, RtlRack, or rtlrack.exe) 1.15.0.0 allows remote attackers to
KritikCVSS 9,3SilahlaştırılmışEPSS %36realtek · realtek media player18 Ara 2008
- CVE-2021-2737239İzleyin
Realtek xPON RTL9601D SDK 1.9 stores passwords in plaintext which may allow attackers to possibly gain access to the device with root permis
KritikCVSS 9,8İstismar yokEPSS %2realtek · xpon rtl9601d software development kit25 Mar 2021
- CVE-2021-3930639İzleyin
A stack buffer overflow was discovered on Realtek RTL8195AM device before 2.0.10, it exists in the client code when an attacker sends a big
KritikCVSS 9,8İstismar yokEPSS %1realtek · rtl8195am firmware22 Ara 2021
- CVE-2021-4357339İzleyin
A buffer overflow was discovered on Realtek RTL8195AM devices before 2.0.10.
KritikCVSS 9,8İstismar yokEPSS %1realtek · rtl8195am firmware11 Kas 2021
- CVE-2022-2955835İzleyin
Realtek rtl819x-SDK before v3.6.1 allows command injection over the web interface.
YüksekCVSS 8,8İstismar yokEPSS %1realtek · rtl819x software development kit28 Tem 2022
- CVE-2024-4043135İzleyin
A lack of input validation in Realtek SD card reader driver before 10.0.26100.21374 through the implementation of the IOCTL_SCSI_PASS_THROUG
YüksekCVSS 8,8Kavram kanıtıEPSS %123 Eki 2024
- CVE-2020-1277335İzleyin
Realtek ADSL/PON Modem SoC - Security Misconfiguration
YüksekCVSS 8,8İstismar yokEPSS %1realtek · adsl router soc firmware8 Haz 2020
- CVE-2023-4767735İzleyin
A cross-site request forgery (csrf) vulnerability exists in the boa CSRF protection functionality of Realtek rtl819x Jungle SDK v3.4.11.
YüksekCVSS 8,8İstismar yokEPSS %0realtek · rtl819x jungle software development kit8 Tem 2024
- CVE-2025-829935İzleyin
Realtek rtl81xx SDK Wi-Fi Driver MgntActSet_TEREDO_SET_RS_PACKET Heap-based Buffer Overflow Local Privilege Escalation Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0realtek · wi-fi usb driver2 Eyl 2025
- CVE-2025-830035İzleyin
Realtek rtl81xx SDK Wi-Fi Driver rtwlanu Heap-based Buffer Overflow Local Privilege Escalation Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0realtek · wi-fi usb driver2 Eyl 2025
- CVE-2025-830235İzleyin
Realtek rtl81xx SDK Wi-Fi Driver rtwlanu Heap-based Buffer Overflow Local Privilege Escalation Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0realtek · wi-fi usb driver2 Eyl 2025
- CVE-2019-1982233İzleyin
A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) allows remote attackers to retrieve the co
YüksekCVSS 7,5Kavram kanıtıEPSS %9realtek · rtk 11n ap firmware27 Oca 2020
- CVE-2020-2585533İzleyin
The function AES_UnWRAP() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and excluding 2.08) does not
YüksekCVSS 8,1İstismar yokEPSS %3realtek · rtl8195a firmware3 Şub 2021
- CVE-2020-2585433İzleyin
The function DecWPA2KeyData() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and excluding 2.08) does
YüksekCVSS 8,1İstismar yokEPSS %3realtek · rtl8195a firmware3 Şub 2021
- CVE-2020-2585633İzleyin
The function DecWPA2KeyData() in the Realtek RTL8195A Wi-Fi Module prior to versions released in April 2020 (up to and excluding 2.08) does
YüksekCVSS 8,1İstismar yokEPSS %2realtek · rtl8195a firmware3 Şub 2021
- CVE-2020-2730233İzleyin
A stack buffer overflow in Realtek RTL8710 (and other Ameba-based devices) can lead to remote code execution via the "memcpy" function, when
YüksekCVSS 8,0İstismar yokEPSS %2realtek · rtl8710c firmware4 Haz 2021
- CVE-2020-2730133İzleyin
A stack buffer overflow in Realtek RTL8710 (and other Ameba-based devices) can lead to remote code execution via the "AES_UnWRAP" function,
YüksekCVSS 8,0Kavram kanıtıEPSS %2realtek · rtl8710c firmware4 Haz 2021
- CVE-2024-3322433İzleyin
An issue in the component rtkio64.sys of Realtek Semiconductor Corp Realtek lO Driver v1.008.0823.2017 allows attackers to escalate privileg
YüksekCVSS 8,4İstismar yokEPSS %022 May 2024
- CVE-2019-1982332İzleyin
A certain router administration interface (that includes Realtek APMIB 0.11f for Boa 0.94.14rc21) stores cleartext administrative passwords
YüksekCVSS 7,5Kavram kanıtıEPSS %6realtek · rtk 11n ap firmware27 Oca 2020