Products: 13
    Vulnerabilities: 11
    Known Exploited: 0
    4
    Critical Level Threats
    1
    High Level Threats
    4
    Medium Level Threats
    2
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-38710

    Root-Level Command Injection in Cudy Router Firmware

    Last Modified: Aug 05, 2026
    Published: Jul 31, 2026

    CVE-2026-38708

    TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3600 v2.3.16, and WR6500 v2.3.15 were discovered to contain a command injection vulnerability in the system.setclock interface. This vulnerability allows attackers to execute arbitrary commands as root via a crafted input.

    Last Modified: Aug 07, 2026
    Published: Jul 31, 2026

    CVE-2026-38711

    TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3600 v2.3.16, and WR6500 v2.3.15 were discovered to contain a command injection vulnerability in the system.upgrade_check interface. This vulnerability allows attackers to execute arbitrary commands as root via a crafted input.

    Last Modified: Aug 07, 2026
    Published: Jul 31, 2026

    CVE-2026-38713

    Command Injection in Router IPsec Connection Interface Allows Root Privilege Escalation

    Last Modified: Aug 07, 2026
    Published: Jul 31, 2026

    CVE-2026-38709

    TR1200 v2.4.15, TR3000 v2.4.21, WR300 v2.4.25, WR1200 v2.4.23, WR1300 v2.4.22, WR1500 v2.3.10, WR3000 v2.4.19, WR3600 v2.3.16, and WR6500 v2.3.15 were discovered to contain a command injection vulnerability in the net.set_wan interface. This vulnerability allows attackers to execute arbitrary commands as root via a crafted input.

    Last Modified: Aug 05, 2026
    Published: Jul 30, 2026
    Items Per Page