Roku kayıtları
roku üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-121 Stack-based Buffer Overflow1
- CWE-20 Improper Input Validation1
- CWE-345 Insufficient Verification of Data Authenticity1
- CWE-457 Use of Uninitialized Variable1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2018-11314İstismar yok | The External Control API in Roku and Roku TV products allow unauthorized access via a DNS Rebind attack.roku · roku firmware · CWE-20 | Kritik9,6 | — | %1,9 | 3 Tem 2018 |
35İzleyin | CVE-2023-6322İstismar yok | Stack-based buffer overflow in message parser functionalityroku · indoor camera se firmware · CWE-121 | Yüksek8,8 | — | %1,0 | 15 May 2024 |
35İzleyin | CVE-2023-6324İstismar yok | ThroughTek Kalay SDK error in handling the PSK identitythroughtek · kalay platform · CWE-457 | Yüksek8,8 | — | %0,7 | 15 May 2024 |
26İzleyin | CVE-2023-6323İstismar yok | ThroughTek Kalay SDK insufficient verification of message authenticitythroughtek · kalay platform · CWE-345 | Orta6,5 | — | %0,3 | 15 May 2024 |
22İzleyin | CVE-2022-27152İstismar yok | Roku devices running RokuOS v9.4.0 build 4200 or earlier that uses a Realtek WiFi chip is vulnerable to Arbitrary file modification.roku · roku os | Orta5,7 | — | %0,3 | 8 Nis 2022 |
- CVE-2018-1131439İzleyin
The External Control API in Roku and Roku TV products allow unauthorized access via a DNS Rebind attack.
KritikCVSS 9,6İstismar yokEPSS %2roku · roku firmware3 Tem 2018
- CVE-2023-632235İzleyin
Stack-based buffer overflow in message parser functionality
YüksekCVSS 8,8İstismar yokEPSS %1roku · indoor camera se firmware15 May 2024
- CVE-2023-632435İzleyin
ThroughTek Kalay SDK error in handling the PSK identity
YüksekCVSS 8,8İstismar yokEPSS %1throughtek · kalay platform15 May 2024
- CVE-2023-632326İzleyin
ThroughTek Kalay SDK insufficient verification of message authenticity
OrtaCVSS 6,5İstismar yokEPSS %0throughtek · kalay platform15 May 2024
- CVE-2022-2715222İzleyin
Roku devices running RokuOS v9.4.0 build 4200 or earlier that uses a Realtek WiFi chip is vulnerable to Arbitrary file modification.
OrtaCVSS 5,7İstismar yokEPSS %0roku · roku os8 Nis 2022