Qca7500 Firmware
Vendor:
First CVE: Feb 22, 2021 · Active for 5 years
86
Total CVEs
More Total CVEs than 99% of tracked products
17.2
Avg CVEs / Year
Higher CVE frequency than 98% of tracked products
7.7
Avg CVSS
Higher Avg CVSS than 65% of tracked products
1.2%
KEV Rate
Higher KEV Rate than 97% of tracked products
Trends Over Time
The number and severity of CVEs published that impact Qca7500 Firmware over time
Volume of CVEsAvg CVSS Base Score
First CVE
Feb 22, 2021
5 years ago
Most Recent CVE
Jun 1, 2026
57 days ago
CVE Severity & Scoring
Qca7500 Firmware86 CVEs
19%
69%
13%
All CVEs353,240 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local50 (58.1%)
Network34 (39.5%)
Unknown0 (0.0%)
Physical1 (1.2%)
Adjacent Network1 (1.2%)
Attack Complexity
Low85 (98.8%)
High1 (1.2%)
Unknown0 (0.0%)
User Interaction
None86 (100.0%)
Unknown0 (0.0%)
Required0 (0.0%)
Privileges Required
Low43 (50.0%)
High7 (8.1%)
None36 (41.9%)
Unknown0 (0.0%)
Top CVEs
Signals from CVEs in this product scope (86 CVEs).
86 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2023-33063HIGH Memory corruption in DSP Services during a remote call from HLOS to DSP. | Dec 5, 2023 | 7.8 | 64 | YES | NO |
CVE-2026-24088HIGH Cryptographic Issue while processing a specific partition which allows unauthorized write access to load a customized bootloader. | Jun 1, 2026 | 8.2 | 34 | NO | NO |
CVE-2021-30351CRITICAL An out of bound memory access can occur due to improper validation of number of frames being passed during music playback in Snapdragon Auto, Snapdragon Compute, Snapdragon Connect | Jan 3, 2022 | 9.8 | 32 | NO | NO |
CVE-2021-1965CRITICAL Possible buffer overflow due to lack of parameter length check during MBSSID scan IE parse in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Mobile, Snapd | Jul 13, 2021 | 9.8 | 31 | NO | NO |
CVE-2021-1980CRITICAL Possible buffer over read due to lack of length check while parsing beacon IE response in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer Electron | Oct 20, 2021 | 9.1 | 30 | NO | NO |
CVE-2021-1976CRITICAL A use after free can occur due to improper validation of P2P device address in PD Request frame in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer | Sep 17, 2021 | 9.8 | 30 | NO | NO |
CVE-2021-1972CRITICAL Possible buffer overflow due to improper validation of device types during P2P search in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snap | Sep 8, 2021 | 9.8 | 30 | NO | NO |
CVE-2024-21473CRITICAL Memory corruption while redirecting log file to any file location with any file name. | Apr 1, 2024 | 9.8 | 29 | NO | NO |
CVE-2023-33083CRITICAL Memory corruption in WLAN Host while processing RRM beacon on the AP. | Dec 5, 2023 | 9.8 | 29 | NO | NO |
CVE-2022-33279CRITICAL Memory corruption due to stack based buffer overflow in WLAN having invalid WNM frame length. | Feb 12, 2023 | 9.8 | 29 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (86 CVEs).
CISA KEV
1 CVE
1.2% of CVEs· 97th percentile
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%
Social Chatter
Signals from CVEs in this product scope (86 CVEs).
Media Mentions
Signals from CVEs in this product scope (86 CVEs).
Top CNAs Publishing CVEs For Qca7500 Firmware
Top CWEs
Versions
No cataloged versions.