Openmptcprouter is a specialized open-source multi-path routing appliance that aggregates multiple network connections, presenting a narrowly scoped but internet-facing attack surface centered on a single core product. Its vulnerability history reflects this role, with observed weaknesses clustering around improper authentication mechanisms and OS command injection in network configuration interfaces, which are endemic to command-driven router administration.
The number and severity of CVEs published that impact products developed by Openmptcprouter over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2025-65882CRITICAL An issue was discovered in openmptcprouter thru 0.64 in file common/package/utils/sys-upgrade-helper/src/tools/sysupgrade.c in function create_xor_ipad_opad allowing attackers to p | Dec 9, 2025 | 9.8 | 32 | NO | NO |
CVE-2021-31245MEDIUM omr-admin.py in openmptcprouter-vps-admin 0.57.3 and earlier compares the user provided password with the original password in a length dependent manner, which allows remote attack | May 6, 2021 | 5.9 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Openmptcprouter.
Media articles that mention a CVE ID that affects a product developed by Openmptcprouter — matched by CVE ID, not by vendor name.