Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-10667 | The web application exposed by the Canon Oce Colorwave 500 4.0.0.0 printer is vulnerable to Stored XSS in /TemplateMana… | Medium (6.1) | 2020-03-19 | Environment Specific |
| CVE-2019-20513 | Open edX Ironwood.1 allows support/certificates?user= reflected XSS. | Medium (6.1) | 2020-03-19 | Environment Specific |
| CVE-2019-15656 | D-Link DSL-2875AL and DSL-2877AL devices through 1.00.05 are prone to information disclosure via a simple crafted reque… | High (7.5) | 2020-03-19 | Environment Specific |
| CVE-2019-15655 | D-Link DSL-2875AL devices through 1.00.05 are prone to password disclosure via a simple crafted /romfile.cfg request to… | High (7.5) | 2020-03-19 | Environment Specific |
| CVE-2019-15654 | Comba AC2400 devices are prone to password disclosure via a simple crafted /09/business/upgrade/upcfgAction.php?downloa… | High (7.5) | 2020-03-19 | Environment Specific |