VYPR

DNR1007XR

by Kenwood

CVEs (7)

  • CVE-2026-18270HigAug 20, 2026
    risk 0.51cvss 7.8epss

    Kenwood DNR1007XR udhcpd Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Kenwood DNR1007XR devices. An attacker must first obtain the ability to execute…

  • CVE-2026-18268HigAug 20, 2026
    risk 0.45cvss 7.0epss

    Kenwood DNR1007XR JKGenService Command Injection Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Kenwood DNR1007XR devices. An attacker must first obtain the ability to execute low-privileged…

  • CVE-2026-18272MedAug 20, 2026
    risk 0.44cvss 6.8epss

    Kenwood DNR1007XR startUpdateProcess Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this vulnerability. The…

  • CVE-2026-18271MedAug 20, 2026
    risk 0.44cvss 6.8epss

    Kenwood DNR1007XR vCardParser Heap-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this…

  • CVE-2026-18269MedAug 20, 2026
    risk 0.44cvss 6.8epss

    Kenwood DNR1007XR tchdr_bytestream_read Out-Of-Bounds Write Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this…

  • CVE-2026-18267MedAug 20, 2026
    risk 0.44cvss 6.8epss

    Kenwood DNR1007XR Firmware Update Link Following Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this vulnerability. …

  • CVE-2026-18273MedAug 20, 2026
    risk 0.43cvss 6.6epss

    Kenwood DNR1007XR USB Incorrect Default Permissions Local Privilege Escalation Vulnerability. This vulnerability allows physically present attackers to escalate privileges on affected installations of Kenwood DNR1007XR devices. An attacker must first obtain the ability to…