Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-9376 | D-Link DIR-610 devices allow Information Disclosure via SERVICES=DEVICE.ACCOUNT%0AAUTHORIZED_GROUP=1 to getcfg.php. NOT… | High (7.5) | 2020-07-09 | Environment Specific |
| CVE-2020-5604 | Android App 'Mercari' (Japan version) prior to version 3.52.0 allows arbitrary method execution of a Java object by a r… | High (8.1) | 2020-07-09 | Environment Specific |
| CVE-2020-2034 | An OS Command Injection vulnerability in the PAN-OS GlobalProtect portal allows an unauthenticated network based attack… | High (8.1) | 2020-07-08 | Environment Specific |
| CVE-2020-2030 | An OS Command Injection vulnerability in the PAN-OS management interface that allows authenticated administrators to ex… | High (7.2) | 2020-07-08 | Environment Specific |
| CVE-2020-1982 | Certain communication between PAN-OS and cloud-delivered services inadvertently use TLS 1.0, which is known to be a cry… | Medium (4.8) | 2020-07-08 | Environment Specific |