AllnetCVEs & Vulnerabilities
3 CVEs affecting Allnet products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
3 CVEs→ All vendors
Most Affected Products
all-rut22gw 2all-rut22gw firmware 2all-wr0500ac 1all-wr0500ac firmware 1
CVE-2025-29269CRITICAL
ALLNET ALL-RUT22GW v3.3.8 was discovered to contain an OS command injection vulnerability via the command parameter in the popen.cgi endpoint.
4 Dec 2025
9.8
CVSS
CVE-2025-29268CRITICAL
ALLNET ALL-RUT22GW v3.3.8 was discovered to store hardcoded credentials in the libicos.so library.
4 Dec 2025
9.8
CVSS
CVE-2022-34767CRITICAL
Web page which "wizardpwd.asp" ALLNET Router model WR0500AC is prone to Authorization bypass vulnerability – the password, located at "admin" allows changing the http[s]://wizardpwd.asp/cgi-bin. Does not validate the user's identity and can be accessed publicly.
21 Jul 2022
9.8
CVSS
← PrevPage 1 / 1Next →