Vulnerabilities
7 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2025-56463 | Mercusys MW305R 3.30 and below is has a Transport Layer Security (TLS) certificate private key disclosure. Mercusys MW305R 3.30 and below is has a Transport Layer Security (TLS) certificate private key disclosure. NVD description · AI analysis pending | 6.8 | <1% | PoC |
| — | |
| CVE-2022-26988 +1 in the same advisory: …26987 | TP-Link TL-WDR7660 2.0.30, Mercury D196G 20200109_2.0.4, and Fast FAC1900R 20190827_2.0.2 routers have a stack overflow issue in `MntAte` function. TP-Link TL-WDR7660 2.0.30, Mercury D196G 20200109_2.0.4, and Fast FAC1900R 20190827_2.0.2 routers have a stack overflow issue in `MntAte` function. Local users could get remote code execution. NVD description · AI analysis pending | 7.8 | 1% | PoC |
| — | |
| CVE-2021-25811 +1 in the same advisory: …25810 | MERCUSYS Mercury X18G 1.0.5 devices allow Denial of service via a crafted value to the POST listen_http_lan parameter. MERCUSYS Mercury X18G 1.0.5 devices allow Denial of service via a crafted value to the POST listen_http_lan parameter. Upon subsequent device restarts after this vulnerability is exploted the device will not be able to access the webserver unless the listen_http_lan parameter to uhttpd.json is manually fixed. NVD description · AI analysis pending | 7.5 group max | 2% |
| — | ||
| CVE-2021-23241 +1 in the same advisory: …23242 | MERCUSYS Mercury X18G 1.0.5 devices allow Directory Traversal via ../ in conjunction with a loginLess or login.htm URI (for authentication bypass) to the web se MERCUSYS Mercury X18G 1.0.5 devices allow Directory Traversal via ../ in conjunction with a loginLess or login.htm URI (for authentication bypass) to the web server, as demonstrated by the /loginLess/../../etc/passwd URI. NVD description · AI analysis pending | 5.3 | 13% | PoC |
| — |