Libupnp
Vendor:
First CVE: Jan 31, 2013 · Active for 13 years
5
Total CVEs
More Total CVEs than 77% of tracked products
1.7
Avg CVEs / Year
Higher CVE frequency than 59% of tracked products
9.0
Avg CVSS
Higher Avg CVSS than 83% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Libupnp over time
Volume of CVEsAvg CVSS Base Score
First CVE
Jan 31, 2013
13 years ago
Most Recent CVE
Jun 4, 2020
2,242 days ago
CVE Severity & Scoring
Libupnp5 CVEs
80%
20%
All CVEs352,708 CVEs
45%
40%
11%
HighCritical
Attack Vector
Local0 (0.0%)
Network3 (60.0%)
Unknown2 (40.0%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low3 (60.0%)
High0 (0.0%)
Unknown2 (40.0%)
User Interaction
None3 (60.0%)
Unknown2 (40.0%)
Required0 (0.0%)
Privileges Required
Low0 (0.0%)
High0 (0.0%)
None3 (60.0%)
Unknown2 (40.0%)
Top CVEs
Signals from CVEs in this product scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2012-5958HIGH Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK f | Jan 31, 2013 | 10.0 | 88 | NO | YES |
CVE-2012-5961HIGH Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK f | Jan 31, 2013 | 10.0 | 60 | NO | YES |
CVE-2016-6255HIGH Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to write to arbitrary files in the webroot via a POST request without a registered handler. | Mar 7, 2017 | 7.5 | 42 | NO | YES |
CVE-2016-8863CRITICAL Heap-based buffer overflow in the create_url_list function in gena/gena_device.c in Portable UPnP SDK (aka libupnp) before 1.6.21 allows remote attackers to cause a denial of servi | Mar 7, 2017 | 9.8 | 33 | NO | NO |
CVE-2020-13848HIGH Portable UPnP SDK (aka libupnp) 1.12.1 and earlier allows remote attackers to cause a denial of service (crash) via a crafted SSDP message due to a NULL pointer dereference in the | Jun 4, 2020 | 7.5 | 20 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (5 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
1 CVE
20.0% of CVEs· 97th percentile
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
60.0% of CVEs· 93rd percentile
Social Chatter
Signals from CVEs in this product scope (5 CVEs).
Media Mentions
Signals from CVEs in this product scope (5 CVEs).
Top CNAs Publishing CVEs For Libupnp
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 1.6.9 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.8 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.7 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.6 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.5 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.4 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.3 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.2 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.16 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.15 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.14 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.13 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.12 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.11 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.10 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.1 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.6.0 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.4.7 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.4.6 | 1 | 10.0 | 82.8% | 0 | 1 |
| 1.4.5 | 1 | 10.0 | 82.8% | 0 | 1 |