Vulnerability record · CVE-2011-1323 · published 9 May 2011
CVE-2011-1323: Yamaha rt100i improper input validation vulnerability
Yamaha · Rt100i
Yamaha RTX, RT, SRT, RTV, RTW, and RTA series routers with firmware 6.x through 10.x, and NEC IP38X series routers with firmware 6.x through 10.x, do not properly handle IP header options, which allows remote attackers to cause a denial of service (device reboot) via a crafted option that triggers access to an invalid memory location.
Description
Yamaha RTX, RT, SRT, RTV, RTW, and RTA series routers with firmware 6.x through 10.x, and NEC IP38X series routers with firmware 6.x through 10.x, do not properly handle IP header options, which allows remote attackers to cause a denial of service (device reboot) via a crafted option that triggers access to an invalid memory location.
AV:N/AC:L/Au:N/C:N/I:N/A:C
Affected products
52 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
Track CVE-2011-1323 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2011-1323), CISA KEV, FIRST EPSS (scores of 2026-10-03). This page is refreshed as NVD updates the record.