Gargoyle-Router Gargoyle vulnerabilities
2 known vulnerabilities affecting gargoyle-router/gargoyle.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
1
Severity breakdown
HIGH2
Vulnerabilities
Page 1 of 1
CVE-2015-10145P1HIGHCVSS 8.8Exploited≥ 1.5.0, ≤ 1.5.112025-12-31
CVE-2015-10145 [HIGH] CWE-78 CVE-2015-10145: Gargoyle router management utility versions 1.5.x contain an authenticated OS command execution vuln
Gargoyle router management utility versions 1.5.x contain an authenticated OS command execution vulnerability in /utility/run_commands.sh. The application fails to properly restrict or validate input supplied via the 'commands' parameter, allowing an authenticated attacker to execute arbitrary shell commands on the underlying system. Successful exploit
nvd
CVE-2021-23270P3HIGHCVSS 7.5v1.12.02021-04-12
CVE-2021-23270 [HIGH] CWE-834 CVE-2021-23270: In Gargoyle OS 1.12.0, when IPv6 is used, a routing loop can occur that generates excessive network
In Gargoyle OS 1.12.0, when IPv6 is used, a routing loop can occur that generates excessive network traffic between an affected device and its upstream ISP's router. This occurs when a link prefix route points to a point-to-point link, a destination IPv6 address belongs to the prefix and is not a local IPv6 address, and a router advertisement is receiv
nvd