Vulnerability index

Browse CVEs

6 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Empirbus Wireless Display Unit Firmware CRITICAL 9.3
CVE-2025-27851

The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows a cross-site origin WebSocket hijacking attack. Among other uses, the WDU …

Mitigation only
Fix from $2,300 2026-05-13
Empirbus Wireless Display Unit Firmware HIGH 7.5
CVE-2025-27850

The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows a symlink attack. If a malicious graphics package containing symlinks is u…

Mitigation only
Fix from $1,950 2026-05-13
Empirbus Wireless Display Unit Firmware HIGH 7.3
CVE-2025-27853

The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows its authentication to be bypassed. The WDU web site only performs authenti…

Mitigation only
Fix from $1,950 2026-05-13
Empirbus Wireless Display Unit Firmware MEDIUM 5.0
CVE-2025-27852

The locally served web site on the Garmin WDU (v1 1.4.6 and v2 5.0) allows a reflected cross site scripting (XSS) attack. This allows an attacker on …

Mitigation only
Fix from $1,600 2026-05-13
Connect HIGH 7.5
CVE-2022-46081

In Garmin Connect 4.61, terminating a LiveTrack session wouldn't prevent the LiveTrack API from continued exposure of private personal information. N…

No fix yet
Fix from $1,950 2023-01-04
Garmin Communicator Plugin HIGH 9.3
CVE-2009-0194

The domain-locking implementation in the GARMINAXCONTROL.GarminAxControl_t.1 ActiveX control in npGarmin.dll in the Garmin Communicator Plug-In 2.6.4…

Mitigation only
Fix from $1,950 2009-05-11