Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-7470 | Sonoff TH 10 and 16 devices with firmware 6.6.0.21 allows XSS via the Friendly Name 1 field (after a successful login w… | Medium (4.8) | 2020-01-21 | Environment Specific |
| CVE-2015-6907 | Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. N… | Unknown | 2020-01-21 | Environment Specific |
| CVE-2019-2267 | Locked regions may be modified through other interfaces in secure boot loader image due to improper access control. in … | High (7.8) | 2020-01-21 | Environment Specific |
| CVE-2019-14036 | Possible buffer overflow issue in error processing due to improper validation of array index value in Snapdragon Auto, … | High (7.8) | 2020-01-21 | Environment Specific |
| CVE-2019-14034 | Use after free while processing eeprom query as there is a chance to not unlock mutex after error occurs in Snapdragon … | High (7.8) | 2020-01-21 | Environment Specific |