LG / Webos
8 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2023-6320 | Command injection in the com.webos.service.connectionmanager/tv/setVlanStaticAddress endpoint | CRITICAL | 9.1 | Apr 9, 2024 |
| CVE-2023-6319 | Command injection in the getAudioMetadata method from the com.webos.service.attachedstoragemanager service | CRITICAL | 9.1 | Apr 9, 2024 |
| CVE-2023-6318 | Command injection in the processAnalyticsReport method from the com.webos.service.cloudupload service | CRITICAL | 9.1 | Apr 9, 2024 |
| CVE-2023-6317 | PIN/prompt bypass on the secondscreen.gateway service allows access to the SSAP API without user interaction | CRITICAL | 9.8 | Apr 9, 2024 |
| CVE-2022-23731 | V8 javascript engine (heap vulnerability) can cause privilege escalation ,which can impact on some webOS TV models. | HIGH | 7.8 | Mar 11, 2022 |
| CVE-2022-23730 | The public API error causes for the attacker to be able to bypass API access control. | CRITICAL | 9.8 | Mar 11, 2022 |
| CVE-2022-23727 | There is a privilege escalation vulnerability in some webOS TVs. Due to wrong setting environments, local attacker is able to perform specific operation to exp… | HIGH | 7.8 | Jan 28, 2022 |
| CVE-2020-9759 | webOS TV Emulator privilege escalation vulnerability | HIGH | 7.8 | Mar 23, 2020 |
Showing 1 to 8 of 8 CVEs