CVE-2026-20452
CVE-2026-20452
Vexday Risk Score
41Attention
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS 8EPSS 0.4%KEV nãoPoC públicaPatch —
Lifecycle
Jun 01, 2026Published on NVD
Jun 06, 2026Public PoC
Recommendation: Plan a near-term fix — a public PoC already exists.
In wlan AP driver, there is a possible memory corruption due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00480138; Issue ID: MSV-6295.
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
MediaTek, Inc. · MediaTek chipsetpublic PoCs found — 1
githubgithub.com/Hunt-Benito/mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce★ 0⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →