Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2019-20377 | TopList before 2019-09-03 allows XSS via a title. | Medium (6.1) | 2020-01-11 | Environment Specific |
| CVE-2011-5020 | An SQL Injection vulnerability exists in the ID parameter in Online TV Database 2011. | Critical (9.8) | 2020-01-10 | Environment Specific |
| CVE-2019-14306 | Ricoh SP C250DN 1.06 devices have Incorrect Access Control (issue 2 of 2). | High (7.5) | 2020-01-10 | Environment Specific |
| CVE-2019-14304 | Ricoh SP C250DN 1.06 devices allow CSRF. | High (8.8) | 2020-01-10 | Environment Specific |
| CVE-2019-14302 | On Ricoh SP C250DN 1.06 devices, a debug port can be used. | Medium (6.8) | 2020-01-10 | Environment Specific |