CVE-2026-20452
41Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendcvss 8epss 0.4%
from disclosure to weapon5 days
Published on NVDJun 1
1st PoC+5d
exploitation probability
0.4%top 64% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
In wlan AP driver, there is a possible memory corruption due to a heap buffer overflow. This could lead to remote (proximal/adjacent) code execution with User execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00480138; Issue ID: MSV-6295.
CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Affected products
MediaTek, Inc. · MediaTek chipsetpublic PoCs found — 1
githubgithub.com/Hunt-Benito/mediatek-wlan-heap-overflow-cve-2026-20452-filogic-router-rce★ 3⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.