Ipq4019 Firmware
Vendor:
First CVE: Apr 18, 2018 · Active for 8 years
156
Total CVEs
More Total CVEs than 99% of tracked products
17.3
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
8.0
Avg CVSS
Higher Avg CVSS than 71% of tracked products
0.6%
KEV Rate
Higher KEV Rate than 97% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Ipq4019 Firmware over time
Volume of CVEsAvg CVSS Base Score
First CVE
Apr 18, 2018
8 years ago
Most Recent CVE
Jun 1, 2026
56 days ago
CVE Severity & Scoring
Ipq4019 Firmware156 CVEs
14%
62%
24%
All CVEs352,785 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local86 (55.1%)
Network67 (42.9%)
Unknown0 (0.0%)
Physical1 (0.6%)
Adjacent Network2 (1.3%)
Attack Complexity
Low152 (97.4%)
High4 (2.6%)
Unknown0 (0.0%)
User Interaction
None156 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low79 (50.6%)
High7 (4.5%)
None70 (44.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (156 CVEs).
156 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-33063HIGH Memory corruption in DSP Services during a remote call from HLOS to DSP. | Dec 5, 2023 | 7.8 | 64 | YES | NO |
CVE-2020-3657CRITICAL u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client through webserver due to lack of array bou | Nov 2, 2020 | 9.8 | 45 | NO | NO |
CVE-2026-24088HIGH Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bootloader. | Jun 1, 2026 | 8.2 | 34 | NO | NO |
CVE-2020-11117CRITICAL u'In the lbd service, an external user can issue a specially crafted debug command to overwrite arbitrary files with arbitrary content resulting in remote code execution.' in Snapd | Sep 8, 2020 | 9.8 | 33 | NO | NO |
CVE-2021-1965CRITICAL Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile, Snapd | Jul 13, 2021 | 9.8 | 31 | NO | NO |
CVE-2020-11172CRITICAL u'fscanf reads a string from a file and stores its contents on a statically allocated stack memory which leads to stack overflow' in Snapdragon Wired Infrastructure and Networking | Nov 2, 2020 | 9.8 | 31 | NO | NO |
CVE-2021-1980CRITICAL Possible buffer over read due to lack of length check while parsing beacon IE response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electron | Oct 20, 2021 | 9.1 | 30 | NO | NO |
CVE-2021-1976CRITICAL A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer | Sep 17, 2021 | 9.8 | 30 | NO | NO |
CVE-2021-1972CRITICAL Possible buffer overflow due to improper validation of device types during P2P search in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snap | Sep 8, 2021 | 9.8 | 30 | NO | NO |
CVE-2016-10484CRITICAL In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear IPQ4019, MDM9206, MDM9607, MDM9625, MDM9635M, | Apr 18, 2018 | 9.8 | 30 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (156 CVEs).
CISA KEV
1 CVE
0.6% of CVEs· 97th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (156 CVEs).
Media Mentions
Signals from CVEs in this product scope (156 CVEs).
Top CNAs Publishing CVEs For Ipq4019 Firmware
Top CWEs
Versions
No cataloged versions.