Realtek vendor intelligence
Realtek Known Exploited Vulnerabilities
Track evidence-backed exploitation affecting Realtek products, including the gap beyond CISA KEV, confidence assessments, sensor observations, and practical response context.
- Total KEVs
- 3
- Known exploited vulnerabilities affecting Realtek products
- In CISA KEV
- 3
- Records also listed in the official catalog
- Beyond CISA KEV
- 0
- Additional exploited CVEs absent from CISA KEV
- Sensor Observed
- 1
- Realtek KEV with sensor-observed exploitation activity
The catalog gap matters for Realtek exposure
All three exploited Realtek CVEs tracked here are also listed in CISA KEV. Use product ownership and sensor evidence to prioritize within this portfolio.
- 100%
- Covered by CISA
- 0%
- Beyond CISA
- 2
- Product families
Attested Realtek CVEs
Search the exploited-vulnerability portfolio, then narrow it to official CISA coverage or the additional records KEV Intelligence tracks beyond the catalog.
How exploitation is verified| CVE / description | Product | Confidence | CISA KEV | Added |
|---|---|---|---|---|
|
CVE-2021-35395
Realtek Jungle SDK version v2.x up to v3.4.14B provides an HTTP web server exposing a management interface that can be used to configure the access... |
Jungle SDK | Confirmed | In CISA | 03 Nov 2021 |
|
CVE-2021-35394
Realtek Jungle SDK version v2.x up to v3.4.14B provides a diagnostic tool called 'MP Daemon' that is usually compiled as 'UDPServer' binary. The... |
Jungle SDK | Confirmed | In CISA | 10 Dec 2021 |
|
CVE-2014-8361
The miniigd SOAP service in Realtek SDK allows remote attackers to execute arbitrary code via a crafted NewInternalClient request, as exploited in... |
SDK | Confirmed | In CISA | 18 Sep 2023 |
No Realtek CVEs match this search or filter.
Showing 3 of 3 Realtek known exploited vulnerabilities.
Recurring weakness patterns
Neutralization account for one mapped occurrence across this Realtek KEV portfolio.
Early warning alerts
Get alerts on high-impact exploitation
Receive curator-selected alerts when exploitation activity warrants attention. Each alert includes the evidence and context needed to decide what requires attention now.