VYPR
Vendor

Kenwood

Products
4
CVEs
36
Across products
40
Status
Private

Products

4

Recent CVEs

36
View all 36 CVEs →
  • CVE-2025-8654HigAug 6, 2025
    risk 0.57cvss 8.8epss 0.01

    Kenwood DMX958XR ReadMVGImage Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this…

  • CVE-2025-8653HigAug 6, 2025
    risk 0.57cvss 8.8epss 0.00

    Kenwood DMX958XR JKRadioService Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Kenwood DMX958XR. Authentication is not required to exploit this…

  • CVE-2026-18270HigAug 20, 2026
    risk 0.51cvss 7.8epss 0.00

    Kenwood DNR1007XR udhcpd Incorrect Permission Assignment Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Kenwood DNR1007XR devices. An attacker must first obtain the ability to execute…

  • CVE-2026-18268HigAug 20, 2026
    risk 0.46cvss 7.0epss 0.01

    Kenwood DNR1007XR JKGenService Command Injection Local Privilege Escalation Vulnerability. This vulnerability allows local attackers to escalate privileges on affected installations of Kenwood DNR1007XR devices. An attacker must first obtain the ability to execute low-privileged…

  • CVE-2026-18272MedAug 20, 2026
    risk 0.44cvss 6.8epss 0.01

    Kenwood DNR1007XR startUpdateProcess Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this vulnerability. The…

  • CVE-2026-18271MedAug 20, 2026
    risk 0.44cvss 6.8epss 0.00

    Kenwood DNR1007XR vCardParser Heap-based Buffer Overflow Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this…

  • CVE-2026-18269MedAug 20, 2026
    risk 0.44cvss 6.8epss 0.00

    Kenwood DNR1007XR tchdr_bytestream_read Out-Of-Bounds Write Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this…

  • CVE-2026-18267MedAug 20, 2026
    risk 0.44cvss 6.8epss 0.00

    Kenwood DNR1007XR Firmware Update Link Following Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DNR1007XR devices. Authentication is not required to exploit this vulnerability. …

  • CVE-2025-8656MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.00

    Kenwood DMX958XR Protection Mechanism Failure Software Downgrade Vulnerability. This vulnerability allows physically present attackers to downgrade software on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulnerability. The…

  • CVE-2025-8655MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.01

    Kenwood DMX958XR libSystemLib Command injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this…

  • CVE-2025-8652MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.01

    Kenwood DMX958XR JKWifiService Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this…

  • CVE-2025-8651MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.01

    Kenwood DMX958XR JKWifiService Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this…

  • CVE-2025-8650MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.01

    Kenwood DMX958XR libSystemLib Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this…

  • CVE-2025-8649MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.01

    Kenwood DMX958XR JKWifiService Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this…

  • CVE-2025-8648MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.01

    Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulnerability. The specific…

  • CVE-2025-8647MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.01

    Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulnerability. The specific…

  • CVE-2025-8646MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.01

    Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulnerability. The specific…

  • CVE-2025-8645MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.01

    Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulnerability. The specific…

  • CVE-2025-8644MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.01

    Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulnerability. The specific…

  • CVE-2025-8643MedAug 6, 2025
    risk 0.44cvss 6.8epss 0.01

    Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulnerability. The specific…