Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Thu, 16 Apr 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | Out-of-Bounds Write in MediaTek Wireless Firmware Enables Privilege Escalation |
Mon, 02 Mar 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Mediatek
Mediatek mt6890 Mediatek mt7915 Mediatek mt7916 Mediatek mt7981 Mediatek mt7986 Mediatek software Development Kit Openwrt Openwrt openwrt |
|
| CPEs | cpe:2.3:a:mediatek:software_development_kit:*:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt6890:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7915:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7916:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7981:-:*:*:*:*:*:*:* cpe:2.3:h:mediatek:mt7986:-:*:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:19.07.0:-:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:21.02.0:-:*:*:*:*:*:* cpe:2.3:o:openwrt:openwrt:23.05.0:-:*:*:*:*:*:* |
|
| Vendors & Products |
Mediatek
Mediatek mt6890 Mediatek mt7915 Mediatek mt7916 Mediatek mt7981 Mediatek mt7986 Mediatek software Development Kit Openwrt Openwrt openwrt |
Mon, 02 Mar 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Mon, 02 Mar 2026 09:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | In wlan AP FW, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00467553; Issue ID: MSV-5151. | |
| Weaknesses | CWE-787 | |
| References |
|
Status: PUBLISHED
Assigner: MediaTek
Published:
Updated: 2026-03-30T13:05:32.389Z
Reserved: 2025-11-03T01:30:59.011Z
Link: CVE-2026-20430
Updated: 2026-03-02T13:38:43.828Z
Status : Analyzed
Published: 2026-03-02T09:16:16.323
Modified: 2026-03-02T22:05:08.293
Link: CVE-2026-20430
No data.
OpenCVE Enrichment
Updated: 2026-04-16T14:45:25Z