Mt8167s

Vendor:

First CVE: Nov 18, 2021 · Active for 4 years

123
Total CVEs
More Total CVEs than 99% of tracked products
24.6
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
6.3
Avg CVSS
Higher Avg CVSS than 26% of tracked products
0.0%
KEV Rate
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact Mt8167s over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 18, 2021
4 years ago
Most Recent CVE
Mar 3, 2025
507 days ago

CVE Severity & Scoring

Mt8167s123 CVEs
All CVEs352,101 CVEs
LowMediumHighCritical
Attack Vector
Local100 (81.3%)
Network6 (4.9%)
Unknown0 (0.0%)
Physical12 (9.8%)
Adjacent Network5 (4.1%)
Attack Complexity
Low118 (95.9%)
High5 (4.1%)
Unknown0 (0.0%)
User Interaction
None107 (87.0%)
Unknown0 (0.0%)
Required16 (13.0%)
Privileges Required
Low13 (10.6%)
High85 (69.1%)
None25 (20.3%)
Unknown0 (0.0%)

Top CVEs

Signals from CVEs in this product scope (123 CVEs).

123 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
In BT firmware, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution with no additional execution privileges needed. User
Sep 6, 20229.830NONO
In Bluetooth, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege with no additional execution privileges needed
Jul 6, 20228.828NONO
In WIFI Firmware, there is a possible memory corruption due to a use after free. This could lead to remote escalation of privilege, when devices are connecting to the attacker-cont
Jun 6, 20228.827NONO
In alac decoder, there is a possible information disclosure due to an incorrect bounds check. This could lead to remote code execution with no additional execution privileges neede
Feb 5, 20249.826NONO
In alac decoder, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with no additional execution privileges
Dec 15, 20217.826NONO
In mmsdk, there is a possible escalation of privilege due to a parcel format mismatch. This could lead to local code execution with no additional execution privileges needed. User
Apr 6, 20237.824NONO
In Wi-Fi driver, there is a possible way to disconnect Wi-Fi due to an improper resource release. This could lead to remote denial of service with no additional execution privilege
Oct 7, 20227.524NONO
In MtkEmail, there is a possible escalation of privilege due to fragment injection. This could lead to local escalation of privilege with no additional execution privileges needed.
Sep 6, 20227.824NONO
In Autoboot, there is a possible permission bypass due to a missing permission check. This could lead to local escalation of privilege with no additional execution privileges neede
Jul 6, 20227.824NONO
In WIFI Firmware, there is a possible system crash due to a missing count check. This could lead to remote denial of service with no additional execution privileges needed. User in
Jun 6, 20227.524NONO

Exploit Exposure

Signals from CVEs in this product scope (123 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

Signals from CVEs in this product scope (123 CVEs).

Media Mentions

Signals from CVEs in this product scope (123 CVEs).

Top CNAs Publishing CVEs For Mt8167s

Top CWEs

Versions

No cataloged versions.