Sonos records
19 published records for vendor sonos.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 15
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-416 Use After Free3
- CWE-121 Stack-based Buffer Overflow3
- CWE-191 Integer Underflow (Wrap or Wraparound)2
- CWE-122 Heap-based Buffer Overflow2
- CWE-787 Out-of-bounds Write2
- CWE-125 Out-of-bounds Read2
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
19 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2022-24049No exploit | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Sonos One Speaker prior to 3.4.1 (S2 systesonos · s1 · CWE-121 | Critical9.8 | — | 7.2% | Feb 18, 2022 |
39Monitor | CVE-2026-4149No exploit | Sonos Era 300 SMB Response Out-Of-Bounds Access Remote Code Execution Vulnerabilitysonos · era 300 firmware · CWE-119 | Critical9.8 | — | 1.1% | Apr 10, 2026 |
38Monitor | CVE-2018-11316No exploit | The UPnP HTTP server on Sonos wireless speaker products allow unauthorized access via a DNS rebinding attack.sonos · sonos firmware · CWE-20 | Critical9.6 | — | 1.3% | Jul 3, 2018 |
36Monitor | CVE-2022-24046No exploit | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker prior to 3.4.1sonos · s1 · CWE-191 | High8.8 | — | 4.1% | Feb 18, 2022 |
35Monitor | CVE-2024-5269No exploit | Sonos Era 100 SMB2 Message Handling Use-After-Free Remote Code Execution Vulnerabilitysonos · era 100 firmware · CWE-416 | High8.8 | — | 1.2% | Jun 6, 2024 |
35Monitor | CVE-2023-27355No exploit | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220.sonos · one firmware · CWE-121 | High8.8 | — | 0.8% | Apr 20, 2023 |
35Monitor | CVE-2023-27352No exploit | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220.sonos · one firmware · CWE-416 | High8.8 | — | 0.8% | Apr 20, 2023 |
35Monitor | CVE-2024-5267No exploit | Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Write Remote Code Execution Vulnerabilitysonos · era 100 firmware · CWE-787 | High8.8 | — | 0.7% | Jun 6, 2024 |
35Monitor | CVE-2025-1048No exploit | Sonos Era 300 Speaker libsmb2 Use-After-Free Remote Code Execution Vulnerabilitysonos · s1 · CWE-416 | High8.8 | — | 0.5% | Apr 23, 2025 |
35Monitor | CVE-2025-1050No exploit | Sonos Era 300 Out-of-Bounds Write Remote Code Execution Vulnerabilitysonos · s2 · CWE-787 | High8.8 | — | 0.4% | Apr 23, 2025 |
35Monitor | CVE-2025-1049No exploit | Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerabilitysonos · s1 · CWE-122 | High8.8 | — | 0.4% | Apr 23, 2025 |
35Monitor | CVE-2025-1051No exploit | Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerabilitysonos · era 300 firmware · CWE-122 | High8.8 | — | 0.4% | Jun 2, 2025 |
31Monitor | CVE-2023-50809No exploit | In certain Sonos products before S1 Release 11.12 and S2 release 15.9, the mt_7615.ko wireless driver does not properly validate an informatCWE-121 | High7.8 | — | 0.4% | Aug 12, 2024 |
27Monitor | CVE-2020-9285No exploit | Some versions of Sonos One (1st and 2nd generation) allow partial or full memory access via attacker controlled hardware that can be attachesonos · one firmware · CWE-1191 | Medium6.8 | — | 0.5% | Oct 20, 2022 |
26Monitor | CVE-2023-27353No exploit | This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-3sonos · one firmware · CWE-125 | Medium6.5 | — | 0.6% | Apr 20, 2023 |
26Monitor | CVE-2023-27354No exploit | This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-3sonos · one firmware · CWE-190 | Medium6.5 | — | 0.6% | Apr 20, 2023 |
26Monitor | CVE-2024-5268No exploit | Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Read Information Disclosure Vulnerabilitysonos · era 100 firmware · CWE-125 | Medium6.5 | — | 0.5% | Jun 6, 2024 |
24Monitor | CVE-2023-50810No exploit | In certain Sonos products before Sonos S1 Release 11.12 and S2 release 15.9, a vulnerability exists in the U-Boot component of the firmware CWE-94 | Medium6.0 | — | 0.8% | Aug 12, 2024 |
17Monitor | CVE-2024-5256No exploit | Sonos Era 100 SMB2 Message Handling Integer Underflow Information Disclosure Vulnerabilitysonos · era 100 firmware · CWE-191 | Medium4.3 | — | 0.4% | Jun 6, 2024 |
- CVE-2022-2404941Plan
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Sonos One Speaker prior to 3.4.1 (S2 syste
CriticalCVSS 9.8No exploitEPSS 7%sonos · s1Feb 18, 2022
- CVE-2026-414939Monitor
Sonos Era 300 SMB Response Out-Of-Bounds Access Remote Code Execution Vulnerability
CriticalCVSS 9.8No exploitEPSS 1%sonos · era 300 firmwareApr 10, 2026
- CVE-2018-1131638Monitor
The UPnP HTTP server on Sonos wireless speaker products allow unauthorized access via a DNS rebinding attack.
CriticalCVSS 9.6No exploitEPSS 1%sonos · sonos firmwareJul 3, 2018
- CVE-2022-2404636Monitor
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker prior to 3.4.1
HighCVSS 8.8No exploitEPSS 4%sonos · s1Feb 18, 2022
- CVE-2024-526935Monitor
Sonos Era 100 SMB2 Message Handling Use-After-Free Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 1%sonos · era 100 firmwareJun 6, 2024
- CVE-2023-2735535Monitor
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220.
HighCVSS 8.8No exploitEPSS 1%sonos · one firmwareApr 20, 2023
- CVE-2023-2735235Monitor
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220.
HighCVSS 8.8No exploitEPSS 1%sonos · one firmwareApr 20, 2023
- CVE-2024-526735Monitor
Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Write Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 1%sonos · era 100 firmwareJun 6, 2024
- CVE-2025-104835Monitor
Sonos Era 300 Speaker libsmb2 Use-After-Free Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 1%sonos · s1Apr 23, 2025
- CVE-2025-105035Monitor
Sonos Era 300 Out-of-Bounds Write Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 0%sonos · s2Apr 23, 2025
- CVE-2025-104935Monitor
Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 0%sonos · s1Apr 23, 2025
- CVE-2025-105135Monitor
Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability
HighCVSS 8.8No exploitEPSS 0%sonos · era 300 firmwareJun 2, 2025
- CVE-2023-5080931Monitor
In certain Sonos products before S1 Release 11.12 and S2 release 15.9, the mt_7615.ko wireless driver does not properly validate an informat
HighCVSS 7.8No exploitEPSS 0%Aug 12, 2024
- CVE-2020-928527Monitor
Some versions of Sonos One (1st and 2nd generation) allow partial or full memory access via attacker controlled hardware that can be attache
MediumCVSS 6.8No exploitEPSS 0%sonos · one firmwareOct 20, 2022
- CVE-2023-2735326Monitor
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-3
MediumCVSS 6.5No exploitEPSS 1%sonos · one firmwareApr 20, 2023
- CVE-2023-2735426Monitor
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-3
MediumCVSS 6.5No exploitEPSS 1%sonos · one firmwareApr 20, 2023
- CVE-2024-526826Monitor
Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Read Information Disclosure Vulnerability
MediumCVSS 6.5No exploitEPSS 0%sonos · era 100 firmwareJun 6, 2024
- CVE-2023-5081024Monitor
In certain Sonos products before Sonos S1 Release 11.12 and S2 release 15.9, a vulnerability exists in the U-Boot component of the firmware
MediumCVSS 6.0No exploitEPSS 1%Aug 12, 2024
- CVE-2024-525617Monitor
Sonos Era 100 SMB2 Message Handling Integer Underflow Information Disclosure Vulnerability
MediumCVSS 4.3No exploitEPSS 0%sonos · era 100 firmwareJun 6, 2024