Known Vulnerabilities for products from Dd-wrt
Listed below are 8 of the newest known vulnerabilities associated with the vendor "Dd-wrt".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-27631 json | A memory corruption vulnerability exists in the httpd unescape functionality of DD-WRT Revision 32270 - Revision 48599. A spe... | 9.8 - CRITICAL | 2022-08-05 | 2022-12-02 |
| CVE-2021-27137 json | An issue was discovered in router/upnp/src/ssdp.c in DD-WRT before 45724. An unsafe strcpy in the UPnP handling functionality... | Not Provided | 2026-07-16 | 2026-07-21 |
| CVE-2020-13976 json | ** DISPUTED ** An issue was discovered in DD-WRT through 16214. The Diagnostic page allows remote attackers to execute arbitr... | 8.8 - HIGH | 2020-06-09 | 2023-11-07 |
| CVE-2012-6297 json | Command Injection vulnerability exists via a CSRF in DD-WRT 24-sp2 from specially crafted configuration values containing she... | 8.8 - HIGH | 2020-02-06 | 2020-02-11 |
| CVE-2009-2766 json | httpd.c in httpd in the management GUI in DD-WRT 24 sp1 does not require administrative authentication for programs under cgi... | Not Provided | 2009-08-14 | 2026-04-23 |
| CVE-2009-2765 json | httpd.c in httpd in the management GUI in DD-WRT 24 sp1, and other versions before build 12533, allows remote attackers to ex... | Not Provided | 2009-08-14 | 2026-04-23 |
| CVE-2008-6975 json | Multiple cross-site request forgery (CSRF) vulnerabilities in apply.cgi in DD-WRT 24 sp2 allow remote attackers to hijack the... | Not Provided | 2009-08-14 | 2026-04-23 |
| CVE-2008-6974 json | Multiple cross-site request forgery (CSRF) vulnerabilities in apply.cgi in DD-WRT 24 sp1 and earlier allow remote attackers t... | Not Provided | 2009-08-14 | 2026-04-23 |
Known software with vulnerabilities from Dd-wrt
| Type | Vendor | Product | Version |
|---|---|---|---|
| Operating System | Dd-wrt | Dd-wrt | - |