Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2021-28858 | TP-Link's TL-WPA4220 4.0.2 Build 20180308 Rel.37064 does not use SSL by default. Attacker on the local network can moni… | Medium (5.5) | 2021-06-15 | Environment Specific |
| CVE-2021-28857 | TP-Link's TL-WPA4220 4.0.2 Build 20180308 Rel.37064 username and password are sent via the cookie. | High (7.5) | 2021-06-15 | Environment Specific |
| CVE-2021-34170 | Bandai Namco FromSoftware Dark Souls III allows remote attackers to execute arbitrary code. | Critical (9.8) | 2021-06-15 | Environment Specific |
| CVE-2021-33887 | Insufficient verification of data authenticity in Peloton TTR01 up to and including PTV55G allows an attacker with phys… | Medium (6.8) | 2021-06-15 | Environment Specific |
| CVE-2021-27388 | SINAMICS medium voltage routable products are affected by a vulnerability in the Sm@rtServer component for remote acces… | Critical (9.8) | 2021-06-15 | Environment Specific |