Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2019-0219 | A website running in the InAppBrowser webview on Android could execute arbitrary JavaScript in the main application's w… | Critical (9.8) | 2020-01-14 | Environment Specific |
| CVE-2013-2773 | Nitro PDF 8.5.0.26: A specially crafted DLL file can facilitate Arbitrary Code Execution | High (7.8) | 2020-01-14 | Environment Specific |
| CVE-2020-6955 | An issue was discovered on Cayin SMP-PRO4 devices. They allow image_preview.html?filename= reflected XSS. | Medium (6.1) | 2020-01-13 | Environment Specific |
| CVE-2020-6954 | An issue was discovered on Cayin SMP-PRO4 devices. A user can discover a saved password by viewing the URL after a Conn… | Medium (6.5) | 2020-01-13 | Environment Specific |
| CVE-2012-4761 | A Privilege Escalation vulnerability exists in the unquoted Service Binary in SDPAgent or SDBAgent in Safend Data Prote… | High (7.8) | 2020-01-13 | Environment Specific |