Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2019-15615 | A wrong check for the system time in the Android App 3.9.0 causes a bypass of the lock protection when changing the tim… | Medium (6.1) | 2020-02-04 | Environment Specific |
| CVE-2019-15614 | Missing sanitization in the iOS App 2.24.4 causes an XSS when opening malicious HTML files. | Medium (5.4) | 2020-02-04 | Environment Specific |
| CVE-2019-15611 | Violation of Secure Design Principles in the iOS App 2.23.0 causes the app to leak its login and token to other Nextclo… | Medium (4.9) | 2020-02-04 | Environment Specific |
| CVE-2015-3612 | A Cross-site Scripting (XSS) vulnerability exists in FortiManager 5.2.1 and earlier and 5.0.10 and earlier via an unspe… | Medium (5.4) | 2020-02-04 | Environment Specific |
| CVE-2015-3611 | A Command Injection vulnerability exists in FortiManager 5.2.1 and earlier and FortiManager 5.0.10 and earlier via unsp… | High (8.8) | 2020-02-04 | Environment Specific |