Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2019-20805 | p_lx_elf.cpp in UPX before 3.96 has an integer overflow during unpacking via crafted values in a PT_DYNAMIC segment. | Medium (5.5) | 2020-06-01 | Environment Specific |
| CVE-2020-6868 | There is an input validation vulnerability in a PON terminal product of ZTE, which supports the creation of WAN connect… | Medium (6.5) | 2020-06-01 | Environment Specific |
| CVE-2020-8482 | Insecure storage of sensitive information in ABB Device Library Wizard versions 6.0.X, 6.0.3.1 and 6.0.3.2 allows unaut… | High (7.8) | 2020-05-29 | Environment Specific |
| CVE-2020-1831 | HUAWEI Mate 20 smartphones with versions earlier than 10.0.0.195(SP31C00E74R3P8) have an improper authorization vulnera… | Low (2.4) | 2020-05-29 | Environment Specific |
| CVE-2020-1870 | There is a denial of service vulnerability in some Huawei products. Due to improper memory management, memory leakage m… | High (7.5) | 2020-05-29 | Environment Specific |