openNDS
4 known vulnerabilities in openNDS, with patch priority, exploit likelihood and the news covering them.
Latest vulnerabilities
- CVE-2026-38822 CVSS 7.6 high In openNDS before 11.0.0, the client_params.sh script, invoked by the openNDS daemon to serve the authenticated client status page, is…
- CVE-2026-38821 CVSS 7.1 high A heap-based buffer overflow vulnerability exists in openNDS before 11.0.0 that allows an unauthenticated attacker on the captive portal…
- CVE-2026-38820 CVSS 8.3 high openNDS before 11.0.0 is susceptible to unauthenticated OS command execution via shell command injection through the fas query parameter…
- CVE-2026-38819 CVSS 5.3 medium Multiple memory leaks in openNDS before 11.0.0 allow an unauthenticated attacker on the captive portal network to exhaust all available…