Vulnerabilities > Openwrt > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-09-04 CVE-2023-32813 Out-of-bounds Write vulnerability in multiple products
In gnss service, there is a possible out of bounds write due to improper input validation.
local
low complexity
linuxfoundation google openwrt CWE-787
4.4
2023-09-04 CVE-2023-32815 Out-of-bounds Read vulnerability in multiple products
In gnss service, there is a possible out of bounds read due to improper input validation.
local
low complexity
linuxfoundation google openwrt CWE-125
4.4
2023-08-07 CVE-2023-20790 Out-of-bounds Write vulnerability in multiple products
In nvram, there is a possible out of bounds write due to a missing bounds check.
4.4
2023-08-07 CVE-2023-20796 Out-of-bounds Write vulnerability in multiple products
In power, there is a possible memory corruption due to an incorrect bounds check.
4.4
2023-07-04 CVE-2023-20775 Out-of-bounds Write vulnerability in multiple products
In display, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google openwrt CWE-787
6.7
2023-06-06 CVE-2023-20725 Out-of-bounds Write vulnerability in multiple products
In preloader, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
rdkcentral google openwrt CWE-787
6.7
2023-05-15 CVE-2023-20694 Out-of-bounds Write vulnerability in multiple products
In preloader, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google openwrt CWE-787
6.7
2023-05-15 CVE-2023-20695 Out-of-bounds Write vulnerability in multiple products
In preloader, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google openwrt CWE-787
6.7
2023-05-15 CVE-2023-20696 Out-of-bounds Write vulnerability in multiple products
In preloader, there is a possible out of bounds write due to a missing bounds check.
local
low complexity
google openwrt CWE-787
6.7
2023-04-11 CVE-2023-24182 Cross-site Scripting vulnerability in Openwrt 22.03.3
LuCI openwrt-22.03 branch git-22.361.69894-438c598 was discovered to contain a stored cross-site scripting (XSS) vulnerability via the component /system/sshkeys.js.
network
low complexity
openwrt CWE-79
5.4