Ipq8074 Firmware
Vendor:
First CVE: Sep 20, 2018 · Active for 7 years
223
Total CVEs
More Total CVEs than 100% of tracked products
24.8
Avg CVEs / Year
Higher CVE frequency than 99% of tracked products
7.8
Avg CVSS
Higher Avg CVSS than 66% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Ipq8074 Firmware over time
Volume of CVEsAvg CVSS Base Score
First CVE
Sep 20, 2018
7 years ago
Most Recent CVE
Jan 7, 2026
202 days ago
CVE Severity & Scoring
Ipq8074 Firmware223 CVEs
15%
66%
19%
All CVEs353,173 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local132 (59.2%)
Network87 (39.0%)
Unknown0 (0.0%)
Physical1 (0.4%)
Adjacent Network3 (1.3%)
Attack Complexity
Low219 (98.2%)
High4 (1.8%)
Unknown0 (0.0%)
User Interaction
None223 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low127 (57.0%)
High5 (2.2%)
None91 (40.8%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (223 CVEs).
223 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2020-3657CRITICAL u'Remote code execution can happen by sending a carefully crafted POST query when Device configuration is accessed from a tethered client through webserver due to lack of array bou | Nov 2, 2020 | 9.8 | 45 | NO | NO |
CVE-2020-11117CRITICAL u'In the lbd service, an external user can issue a specially crafted debug command to overwrite arbitrary files with arbitrary content resulting in remote code execution.' in Snapd | Sep 8, 2020 | 9.8 | 33 | NO | NO |
CVE-2021-30351CRITICAL An out of bound memory access can occur due to improper validation of number of frames being passed during music playback in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect | Jan 3, 2022 | 9.8 | 32 | NO | NO |
CVE-2020-11172CRITICAL u'fscanf reads a string from a file and stores its contents on a statically allocated stack memory which leads to stack overflow' in Snapdragon Wired Infrastructure and Networking | Nov 2, 2020 | 9.8 | 31 | NO | NO |
CVE-2018-13924CRITICAL Lack of check to prevent the buffer length taking negative values can lead to stack overflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, | Jul 22, 2019 | 9.8 | 31 | NO | NO |
CVE-2022-25748CRITICAL Memory corruption in WLAN due to integer overflow to buffer overflow while parsing GTK frames. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer | Oct 19, 2022 | 9.8 | 30 | NO | NO |
CVE-2021-1980CRITICAL Possible buffer over read due to lack of length check while parsing beacon IE response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electron | Oct 20, 2021 | 9.1 | 30 | NO | NO |
CVE-2021-1976CRITICAL A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer | Sep 17, 2021 | 9.8 | 30 | NO | NO |
CVE-2021-1972CRITICAL Possible buffer overflow due to improper validation of device types during P2P search in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snap | Sep 8, 2021 | 9.8 | 30 | NO | NO |
CVE-2020-3675CRITICAL u'Potential integer underflow while parsing Service Info and IPv6 link-local TLVs that comes as part of NDPE attribute' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectiv | Sep 8, 2020 | 9.8 | 30 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (223 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (223 CVEs).
Media Mentions
Signals from CVEs in this product scope (223 CVEs).
Top CNAs Publishing CVEs For Ipq8074 Firmware
Top CWEs
Versions
No cataloged versions.