Jungo is a niche software vendor whose vulnerabilities concentrate in embedded systems and firmware contexts, particularly through integration with Wind River platforms and real-time operating system environments. The recurring weakness classes—improper input validation, privilege management flaws, out-of-bounds writes, and resource-handling issues—reflect the memory-safety and access-control demands of low-level system software, and public exploit code has frequently been developed for vulnerabilities in this vendor's products. Defenders working with embedded systems, IoT deployments, or real-time platforms that incorporate Jungo components should monitor disclosures closely, as the intersection of firmware exposure and exploit availability elevates the practical risk even in low-visibility environments. Current severity, in-the-wild exploitation status, and detailed CVE counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Jungo over time
Signals from CVEs in this vendor scope (20 CVEs).
20 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-5189HIGH Race condition in Jungo Windriver 12.5.1 allows local users to cause a denial of service (buffer overflow) or gain system privileges by flipping pool buffer size, aka a "double fet | Jan 11, 2018 | 7.8 | 36 | NO | YES |
CVE-2017-14344HIGH This vulnerability allows local attackers to escalate privileges on Jungo WinDriver 12.4.0 and earlier. An attacker must first obtain the ability to execute low-privileged code on | Sep 12, 2017 | 7.8 | 35 | NO | YES |
CVE-2017-14153HIGH This vulnerability allows local attackers to escalate privileges on Jungo WinDriver 12.4.0 and earlier. An attacker must first obtain the ability to execute low-privileged code on | Sep 11, 2017 | 7.8 | 34 | NO | YES |
CVE-2017-14075HIGH This vulnerability allows local attackers to escalate privileges on Jungo WinDriver 12.4.0 and earlier. An attacker must first obtain the ability to execute low-privileged code on | Sep 11, 2017 | 7.8 | 33 | NO | YES |
CVE-2024-26314HIGH Improper privilege management in Jungo WinDriver 6.0.0 through 16.1.0 allows local attackers to escalate privileges and execute arbitrary code. | Jul 2, 2024 | 7.8 | 22 | NO | NO |
CVE-2024-25088HIGH Improper privilege management in Jungo WinDriver before 12.5.1 allows local attackers to escalate privileges and execute arbitrary code. | Jul 2, 2024 | 7.8 | 22 | NO | NO |
CVE-2024-22106HIGH Improper privilege management in Jungo WinDriver before 12.5.1 allows local attackers to escalate privileges, execute arbitrary code, or cause a Denial of Service (DoS). | Jul 2, 2024 | 7.8 | 22 | NO | NO |
CVE-2023-51776HIGH Improper privilege management in Jungo WinDriver before 12.1.0 allows local attackers to escalate privileges and execute arbitrary code. | Jul 2, 2024 | 7.8 | 22 | NO | NO |
CVE-2024-25086HIGH Improper privilege management in Jungo WinDriver before 12.2.0 allows local attackers to escalate privileges and execute arbitrary code. | Jul 2, 2024 | 7.8 | 20 | NO | NO |
CVE-2018-8821MEDIUM windrvr1260.sys in Jungo DriverWizard WinDriver 12.6.0 allows attackers to cause a denial of service (BSOD) via a crafted .exe file. | Mar 20, 2018 | 5.5 | 20 | NO | NO |
Signals from CVEs in this vendor scope (20 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Jungo.
Media articles that mention a CVE ID that affects a product developed by Jungo — matched by CVE ID, not by vendor name.