Skip to content
COOEY

FAIL › dossier

Multiple Routers

PRODUCT

· dossier confidence 0%

Multiple Routers has a concerning history of critical security vulnerabilities, including multiple remote code execution flaws, impacting a wide range of their router products. This pattern of vulnerabilities raises significant concerns about their security development lifecycle and device security posture.

PROFILE
CategoryNetworking HardwareWhat they doMultiple Routers provides networking hardware and related services. They offer a range of routers and related technologies.
SECURITY POSTURE

Multiple Routers has a history of significant security vulnerabilities, with multiple instances of remote code execution (RCE) flaws impacting their devices. These vulnerabilities have been actively exploited and often affect multiple router series and revisions.

Notable failures
  • CVE-2018-6530 (RCE)
  • CVE-2025-9377 (RCE)
  • CVE-2023-33538 (RCE)
  • CVE-2021-45382 (RCE)
  • CVE-2019-16920 (RCE)
  • CVE-2016-6277 (RCE)
Patterns: Repeated RCE vulnerabilities; Impact across multiple router series and revisions; Vulnerabilities affecting end-of-life products
FAILURE HISTORY · 6
DATEEVENTSEVSUMMARY
2022-09-08 CVE-2018-6530 critical D-Link routers suffer from an actively exploited OS command injection flaw that allows remote code execution.
2022-04-04 CVE-2021-45382 high D-Link routers shipped with a remote code execution flaw in the DDNS function that was actively exploited in the wild.
2022-03-25 CVE-2019-16920 high D-Link routers had a command injection flaw allowing full system compromise.
2022-03-07 CVE-2016-6277 high NETGEAR routers allowed unauthenticated remote code execution via form inputs passed directly to the CLI.
2025-09-03 CVE-2025-9377 high TP-Link routers with CVE-2025-9377 actively exploited for command injection
2025-06-16 CVE-2023-33538 high TP-Link routers with CVE-2023-33538 actively exploited for command injection
Open questions: What is the ownership structure of Multiple Routers? · What is the current product portfolio and lifecycle management process? · What security awareness and training programs are in place?
DOSSIER · dex-RAG synthesis · grounded in our own collection + trusted sourcesbuilt 2026-07-19 04:41:15.902653+00:00