Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Yamaha

First CVE: Nov 2, 1999Active for: 27 yearsTotal CVEs: 12
32.7
VTI Score
Medium

Yamaha's vulnerability profile centers on a focused line of network routing and connectivity appliances, including models such as the RT57i, RT58i, RTX1000, RTX1100, and RTX1500, which serve as critical infrastructure in enterprise and branch-office networks. The recurring weakness classes reflect the web-management and input-handling attack surface typical of network devices: improper input validation, cross-site request forgery, and output-encoding issues predominate, while a notable share of the vendor's disclosures acquire public exploit code. Defenders should track Yamaha's advisories for its routing portfolio and prioritize patching of internet-exposed management interfaces; current severity, exploitation activity, and exposure counts are shown alongside this summary.

FAUCET AI Generated
12
Total CVEs
More Total CVEs than 93% of tracked vendors
0.0
Avg CVEs / Product / Year
Bottom 1%
6.4
Avg CVSS Score
Higher Avg CVSS Score than 39% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Yamaha over time

Volume of CVEsAvg CVSS Base Score
First CVE
Nov 2, 1999
26 years ago
Most Recent CVE
Jan 24, 2024
912 days ago

Products(69 total)

Top CVEs

Signals from CVEs in this vendor scope (12 CVEs).

12 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2005-0356MEDIUM
Multiple TCP implementations with Protection Against Wrapped Sequence Numbers (PAWS) with the timestamps option enabled allow remote attackers to cause a denial of service (connect
May 31, 20055.069NOYES
CVE-2020-5548HIGH
Yamaha LTE VoIP Router(NVR700W firmware Rev.15.00.15 and earlier), Yamaha Gigabit VoIP Router(NVR510 firmware Rev.15.01.14 and earlier), Yamaha Gigabit VPN Router(RTX810 firmware R
Apr 1, 20207.524NONO
CVE-2018-0666MEDIUM
Yamaha routers RT57i Rev.8.00.95 and earlier, RT58i Rev.9.01.51 and earlier, NVR500 Rev.11.00.36 and earlier, RTX810 Rev.11.01.31 and earlier, allow an administrative user to embed
Jan 9, 20196.823NONO
CVE-2011-1323HIGH
Yamaha RTX, RT, SRT, RTV, RTW, and RTA series routers with firmware 6.x through 10.x, and NEC IP38X series routers with firmware 6.x through 10.x, do not properly handle IP header
May 9, 20117.823NONO
CVE-1999-0946MEDIUM
Buffer overflow in Yamaha MidiPlug via a Text variable in an EMBED tag.
Nov 2, 19995.123NOYES
CVE-2021-20844MEDIUM
Improper neutralization of HTTP request headers for scripting syntax vulnerability in the Web GUI of RTX830 Rev.15.02.17 and earlier, NVR510 Rev.15.01.18 and earlier, NVR700W Rev.1
Nov 24, 20215.721NONO
CVE-2018-0665MEDIUM
Yamaha routers RT57i Rev.8.00.95 and earlier, RT58i Rev.9.01.51 and earlier, NVR500 Rev.11.00.36 and earlier, RTX810 Rev.11.01.31 and earlier, allow an administrative user to embed
Jan 9, 20196.821NONO
CVE-2024-22366MEDIUM
Active debug code exists in Yamaha wireless LAN access point devices. If a logged-in user who knows how to use the debug function accesses the device's management page, this functi
Jan 24, 20246.820NONO
CVE-2021-20843MEDIUM
Cross-site script inclusion vulnerability in the Web GUI of RTX830 Rev.15.02.17 and earlier, NVR510 Rev.15.01.18 and earlier, NVR700W Rev.15.00.19 and earlier, and RTX1210 Rev.14.0
Nov 24, 20215.420NONO
CVE-2008-2173HIGH
Unspecified vulnerability in Yamaha routers allows remote attackers to cause a denial of service (dropped session) via crafted BGP UPDATE messages, leading to route flapping, possi
May 13, 20087.519NONO
View all 12 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products12 CVEs
67%
33%
Severity distribution among all CVEs352,231 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local0 (0.0%)
Network4 (33.3%)
Unknown5 (41.7%)
Physical0 (0.0%)
Adjacent Network3 (25.0%)
Attack Complexity
Low7 (58.3%)
High0 (0.0%)
Unknown5 (41.7%)
User Interaction
None5 (41.7%)
Unknown5 (41.7%)
Required2 (16.7%)
Privileges Required
Low2 (16.7%)
High3 (25.0%)
None2 (16.7%)
Unknown5 (41.7%)

Exploit Exposure

Signals from CVEs in this vendor scope (12 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
2 CVEs
16.7% of CVEs· 77th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Yamaha.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Yamaha — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Yamaha's Products

View all 3 CNAs →

Top CWEs