CVE-2023-20820: Openwrt

High severity, CVSS 7.2. EPSS: 1.6% chance of exploitation in the next 30 days.

In wlan service, there is a possible command injection due to improper input validation. This could lead to remote code execution with System execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00244189; Issue ID: WCNCR00244189.

Affected products

  • Openwrt Openwrt: version 19.07.0 only; version 21.02.0 only

Published 2023-09-04. Last modified 2026-06-17.