VYPR

Edgemax Edgerouter Firmware

by UI

CVEs (4)

  • CVE-2022-43553HigDec 5, 2022
    risk 0.57cvss 8.8epss 0.01

    A remote code execution vulnerability in EdgeRouters (Version 2.0.9-hotfix.4 and earlier) allows a malicious actor with an operator account to run arbitrary administrator commands.This vulnerability is fixed in Version 2.0.9-hotfix.5 and later.

  • CVE-2023-31998HigJul 18, 2023
    risk 0.49cvss 7.5epss 0.01

    A heap overflow vulnerability found in EdgeRouters and Aircubes allows a malicious actor to interrupt UPnP service to said devices.

  • CVE-2021-22909HigMay 27, 2021
    risk 0.49cvss 7.5epss 0.01

    A vulnerability found in EdgeMAX EdgeRouter V2.0.9 and earlier could allow a malicious actor to execute a man-in-the-middle (MitM) attack during a firmware update. This vulnerability is fixed in EdgeMAX EdgeRouter V2.0.9-hotfix.1 and later.

  • CVE-2023-2373HigApr 28, 2023
    risk 0.47cvss 7.2epss 0.08

    A vulnerability was identified in Ubiquiti EdgeRouter X up to 2.0.9-hotfix.6. This vulnerability affects unknown code of the component Web Management Interface. Such manipulation of the argument ecn-up leads to command injection. The attack may be performed from remote. The…