Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-12246 | Beeline Smart Box 2.0.38 routers allow "Advanced settings > Other > Diagnostics" OS command injection via the Ping ping… | High (8.8) | 2020-04-29 | Environment Specific |
| CVE-2019-16652 | The BPM component in Genius Bytes Genius Server (Genius CDDS) 3.2.2 allows remote authenticated users to execute arbitr… | High (7.2) | 2020-04-29 | Environment Specific |
| CVE-2020-12447 | A Local File Inclusion (LFI) issue on Onkyo TX-NR585 1000-0000-000-0008-0000 devices allows remote unauthenticated user… | High (7.5) | 2020-04-29 | Environment Specific |
| CVE-2020-8489 | Insufficient protection of the inter-process communication functions in ABB System 800xA Information Management (all pu… | High (7.8) | 2020-04-29 | Environment Specific |
| CVE-2020-8488 | Insufficient protection of the inter-process communication functions in ABB System 800xA Batch Management (all publishe… | High (7.8) | 2020-04-29 | Environment Specific |