Rt-ax55
12 CVEs tracked. 1 of them are in CISA KEV.
This hub aggregates every CVE we track for Rt-ax55, a product in the hardware firmware space. Use it to gauge the current risk picture and drill into individual advisories.
Rt-ax55 CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 1 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 12 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical1
- High9
- Medium1
- Low1
Latest CVEs
The 12 most recently published vulnerabilities affecting Rt-ax55.
- CVE-2024-11985An improper input validation vulnerability leads to device crashes in certain ASUS router models. Refer to the '12/03/2024 ASUS Router Improper Input Validation' section on the ASUS Security Advis...4.4
- CVE-2024-0401ASUS OVPN RCE7.2
- CVE-2023-41348ASUS RT-AX55 - command injection - 48.8
- CVE-2023-41347ASUS RT-AX55 - command injection - 38.8
- CVE-2023-41346ASUS RT-AX55 - command injection - 28.8
- CVE-2023-41345ASUS RT-AX55 - command injection - 18.8
- CVE-2023-39780On ASUS RT-AX55 3.0.0.4.386.51598 devices, authenticated attackers can perform OS command injection via the /start_apply.htm qos_bw_rulelist parameter. NOTE: for the similar "token-generated module...8.8
- CVE-2023-39240ASUS RT-AX55、RT-AX56U_V2 - Format String - 37.2
- CVE-2023-39239ASUS RT-AX55、RT-AX56U_V2、RT-AC86U - Format String - 27.2
- CVE-2023-39238ASUS RT-AX55、RT-AX56U_V2 - Format String - 17.2
- CVE-2022-26376A memory corruption vulnerability exists in the httpd unescape functionality of Asuswrt prior to 3.0.0.4.386_48706 and Asuswrt-Merlin New Gen prior to 386.7.. A specially-crafted HTTP request can l...9.8
- CVE-2021-37910ASUS GT-AXE11000, RT-AX3000, RT-AX55, RT-AX58U, TUF-AX3000 - Improper Authentication3.7
Product grouping is registry-driven, with AI assist and human review. How it works