Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2015-2207 | Multiple cross-site scripting (XSS) vulnerabilities in NetCracker Resource Management System before 8.2 allow remote au… | Medium (5.4) | 2020-02-08 | Environment Specific |
| CVE-2014-2225 | Multiple cross-site request forgery (CSRF) vulnerabilities in Ubiquiti Networks UniFi Controller before 3.2.1 allow rem… | High (8.8) | 2020-02-08 | Environment Specific |
| CVE-2019-11482 | Sander Bos discovered a time of check to time of use (TOCTTOU) vulnerability in apport that allowed a user to cause cor… | Medium (4.2) | 2020-02-08 | Environment Specific |
| CVE-2019-19356 | Netis WF2419 is vulnerable to authenticated Remote Code Execution (RCE) as root through the router Web management page.… | High (7.5) | 2020-02-07 | Environment Specific |
| CVE-2011-1086 | Cross-site scripting (XSS) vulnerability in admin/system.html in Openfiler 2.3 allows remote attackers to inject arbitr… | Medium (6.1) | 2020-02-07 | Environment Specific |