Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-12131 | The AirDisk Pro app 5.5.3 for iOS allows XSS via the devicename parameter (shown next to the UI logo). | Medium (6.1) | 2020-04-24 | Environment Specific |
| CVE-2020-12130 | The AirDisk Pro app 5.5.3 for iOS allows XSS via the deleteFile parameter of the Delete function. | Medium (6.1) | 2020-04-24 | Environment Specific |
| CVE-2020-12129 | The AirDisk Pro app 5.5.3 for iOS allows XSS via the createFolder parameter of the Create Folder function. | Medium (6.1) | 2020-04-24 | Environment Specific |
| CVE-2020-12128 | DONG JOO CHO File Transfer iFamily 2.1 allows directory traversal related to the ./etc/ path. | High (7.5) | 2020-04-24 | Environment Specific |
| CVE-2019-15794 | Overlayfs in the Linux kernel and shiftfs, a non-upstream patch to the Linux kernel included in the Ubuntu 5.0 and 5.3 … | High (7.1) | 2020-04-24 | Environment Specific |