Перейти к содержимому
Noroxi

Записи Sonos

19 опубликованных записей вендора sonos.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
15
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 18
  2. 22
  3. 23
  4. 24
  5. 25
  6. 26

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

19 записей
  • CVE-2022-24049
    41В плане

    This vulnerability allows remote attackers to execute arbitrary code on affected installations of Sonos One Speaker prior to 3.4.1 (S2 syste

    КритическаяCVSS 9,8Эксплойта нетEPSS 7 %

    sonos · s118 февр. 2022 г.

  • CVE-2026-4149
    39Наблюдать

    Sonos Era 300 SMB Response Out-Of-Bounds Access Remote Code Execution Vulnerability

    КритическаяCVSS 9,8Эксплойта нетEPSS 1 %

    sonos · era 300 firmware10 апр. 2026 г.

  • CVE-2018-11316
    38Наблюдать

    The UPnP HTTP server on Sonos wireless speaker products allow unauthorized access via a DNS rebinding attack.

    КритическаяCVSS 9,6Эксплойта нетEPSS 1 %

    sonos · sonos firmware3 июл. 2018 г.

  • CVE-2022-24046
    36Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker prior to 3.4.1

    ВысокаяCVSS 8,8Эксплойта нетEPSS 4 %

    sonos · s118 февр. 2022 г.

  • CVE-2024-5269
    35Наблюдать

    Sonos Era 100 SMB2 Message Handling Use-After-Free Remote Code Execution Vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    sonos · era 100 firmware6 июн. 2024 г.

  • CVE-2023-27355
    35Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    sonos · one firmware20 апр. 2023 г.

  • CVE-2023-27352
    35Наблюдать

    This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220.

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    sonos · one firmware20 апр. 2023 г.

  • CVE-2024-5267
    35Наблюдать

    Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Write Remote Code Execution Vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    sonos · era 100 firmware6 июн. 2024 г.

  • CVE-2025-1048
    35Наблюдать

    Sonos Era 300 Speaker libsmb2 Use-After-Free Remote Code Execution Vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 1 %

    sonos · s123 апр. 2025 г.

  • CVE-2025-1050
    35Наблюдать

    Sonos Era 300 Out-of-Bounds Write Remote Code Execution Vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    sonos · s223 апр. 2025 г.

  • CVE-2025-1049
    35Наблюдать

    Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    sonos · s123 апр. 2025 г.

  • CVE-2025-1051
    35Наблюдать

    Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability

    ВысокаяCVSS 8,8Эксплойта нетEPSS 0 %

    sonos · era 300 firmware2 июн. 2025 г.

  • CVE-2023-50809
    31Наблюдать

    In certain Sonos products before S1 Release 11.12 and S2 release 15.9, the mt_7615.ko wireless driver does not properly validate an informat

    ВысокаяCVSS 7,8Эксплойта нетEPSS 0 %

    12 авг. 2024 г.

  • CVE-2020-9285
    27Наблюдать

    Some versions of Sonos One (1st and 2nd generation) allow partial or full memory access via attacker controlled hardware that can be attache

    СредняяCVSS 6,8Эксплойта нетEPSS 0 %

    sonos · one firmware20 окт. 2022 г.

  • CVE-2023-27353
    26Наблюдать

    This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-3

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    sonos · one firmware20 апр. 2023 г.

  • CVE-2023-27354
    26Наблюдать

    This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-3

    СредняяCVSS 6,5Эксплойта нетEPSS 1 %

    sonos · one firmware20 апр. 2023 г.

  • CVE-2024-5268
    26Наблюдать

    Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Read Information Disclosure Vulnerability

    СредняяCVSS 6,5Эксплойта нетEPSS 0 %

    sonos · era 100 firmware6 июн. 2024 г.

  • CVE-2023-50810
    24Наблюдать

    In certain Sonos products before Sonos S1 Release 11.12 and S2 release 15.9, a vulnerability exists in the U-Boot component of the firmware

    СредняяCVSS 6,0Эксплойта нетEPSS 1 %

    12 авг. 2024 г.

  • CVE-2024-5256
    17Наблюдать

    Sonos Era 100 SMB2 Message Handling Integer Underflow Information Disclosure Vulnerability

    СредняяCVSS 4,3Эксплойта нетEPSS 0 %

    sonos · era 100 firmware6 июн. 2024 г.