Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2019-15311 | An issue was discovered on Zolo Halo devices via the Linkplay firmware. There is Zolo Halo LAN remote code execution. T… | Critical (9.8) | 2020-07-01 | Environment Specific |
| CVE-2019-15310 | An issue was discovered on various devices via the Linkplay firmware. There is WAN remote code execution without user i… | Critical (9.8) | 2020-07-01 | Environment Specific |
| CVE-2020-7688 | The issue occurs because tagName user input is formatted inside the exec function is executed without any checks. | High (8.4) | 2020-07-01 | Environment Specific |
| CVE-2020-12498 | mwe file parsing in Phoenix Contact PC Worx and PC Worx Express version 1.87 and earlier is vulnerable to out-of-bounds… | High (7.8) | 2020-07-01 | Environment Specific |
| CVE-2020-12497 | PLCopen XML file parsing in Phoenix Contact PC Worx and PC Worx Express version 1.87 and earlier can lead to a stack-ba… | High (7.8) | 2020-07-01 | Environment Specific |