Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-0418 | In getPermissionInfosForGroup of Utils.java, there is a logic error. This could lead to local escalation of privilege w… | High (7.8) | 2020-11-10 | Environment Specific |
| CVE-2020-0409 | In create of FileMap.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local … | High (7.8) | 2020-11-10 | Environment Specific |
| CVE-2020-28373 | upnpd on certain NETGEAR devices allows remote (LAN) attackers to execute arbitrary code via a stack-based buffer overf… | High (8.8) | 2020-11-09 | Environment Specific |
| CVE-2020-28351 | The conferencing component on Mitel ShoreTel 19.46.1802.0 devices could allow an unauthenticated attacker to conduct a … | Medium (6.1) | 2020-11-09 | Environment Specific |
| CVE-2020-28349 | An inaccurate frame deduplication process in ChirpStack Network Server 3.9.0 allows a malicious gateway to perform upli… | Medium (6.5) | 2020-11-09 | Environment Specific |