Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2019-3686 | openQA before commit c172e8883d8f32fced5e02f9b6faaacc913df27b was vulnerable to XSS in the distri and version parameter… | Medium (6.5) | 2020-01-17 | Environment Specific |
| CVE-2019-19142 | Intelbras WRN240 devices do not require authentication to replace the firmware via a POST request to the incoming/Firmw… | High (7.5) | 2020-01-17 | Environment Specific |
| CVE-2019-3997 | Authentication bypass using an alternate path or channel in SimpliSafe SS3 firmware 1.0-1.3 allows a local, unauthentic… | Medium (4.6) | 2020-01-16 | Environment Specific |
| CVE-2019-9503 | The Broadcom brcmfmac WiFi driver prior to commit a4176ec356c73a46c07c181c6d04039fafa34a9f is vulnerable to a frame val… | High (7.9) | 2020-01-16 | Environment Specific |
| CVE-2019-9500 | The Broadcom brcmfmac WiFi driver prior to commit 1b5e2423164b3670e8bc9174e4762d297990deff is vulnerable to a heap buff… | High (7.9) | 2020-01-16 | Environment Specific |