Sonos kayıtları
sonos üreticisine ait 19 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 15
- Düzeltme kaydı olan
- %0
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-416 Use After Free3
- CWE-121 Stack-based Buffer Overflow3
- CWE-191 Integer Underflow (Wrap or Wraparound)2
- CWE-122 Heap-based Buffer Overflow2
- CWE-787 Out-of-bounds Write2
- CWE-125 Out-of-bounds Read2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
19 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
41Planlayın | CVE-2022-24049İstismar yok | This vulnerability allows remote attackers to execute arbitrary code on affected installations of Sonos One Speaker prior to 3.4.1 (S2 systesonos · s1 · CWE-121 | Kritik9,8 | — | %7,2 | 18 Şub 2022 |
39İzleyin | CVE-2026-4149İstismar yok | Sonos Era 300 SMB Response Out-Of-Bounds Access Remote Code Execution Vulnerabilitysonos · era 300 firmware · CWE-119 | Kritik9,8 | — | %1,1 | 10 Nis 2026 |
38İzleyin | CVE-2018-11316İstismar yok | The UPnP HTTP server on Sonos wireless speaker products allow unauthorized access via a DNS rebinding attack.sonos · sonos firmware · CWE-20 | Kritik9,6 | — | %1,3 | 3 Tem 2018 |
36İzleyin | CVE-2022-24046İstismar yok | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker prior to 3.4.1sonos · s1 · CWE-191 | Yüksek8,8 | — | %4,1 | 18 Şub 2022 |
35İzleyin | CVE-2024-5269İstismar yok | Sonos Era 100 SMB2 Message Handling Use-After-Free Remote Code Execution Vulnerabilitysonos · era 100 firmware · CWE-416 | Yüksek8,8 | — | %1,2 | 6 Haz 2024 |
35İzleyin | CVE-2023-27355İstismar yok | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220.sonos · one firmware · CWE-121 | Yüksek8,8 | — | %0,8 | 20 Nis 2023 |
35İzleyin | CVE-2023-27352İstismar yok | This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220.sonos · one firmware · CWE-416 | Yüksek8,8 | — | %0,8 | 20 Nis 2023 |
35İzleyin | CVE-2024-5267İstismar yok | Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Write Remote Code Execution Vulnerabilitysonos · era 100 firmware · CWE-787 | Yüksek8,8 | — | %0,7 | 6 Haz 2024 |
35İzleyin | CVE-2025-1048İstismar yok | Sonos Era 300 Speaker libsmb2 Use-After-Free Remote Code Execution Vulnerabilitysonos · s1 · CWE-416 | Yüksek8,8 | — | %0,5 | 23 Nis 2025 |
35İzleyin | CVE-2025-1050İstismar yok | Sonos Era 300 Out-of-Bounds Write Remote Code Execution Vulnerabilitysonos · s2 · CWE-787 | Yüksek8,8 | — | %0,4 | 23 Nis 2025 |
35İzleyin | CVE-2025-1049İstismar yok | Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerabilitysonos · s1 · CWE-122 | Yüksek8,8 | — | %0,4 | 23 Nis 2025 |
35İzleyin | CVE-2025-1051İstismar yok | Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerabilitysonos · era 300 firmware · CWE-122 | Yüksek8,8 | — | %0,4 | 2 Haz 2025 |
31İzleyin | CVE-2023-50809İstismar yok | In certain Sonos products before S1 Release 11.12 and S2 release 15.9, the mt_7615.ko wireless driver does not properly validate an informatCWE-121 | Yüksek7,8 | — | %0,4 | 12 Ağu 2024 |
27İzleyin | CVE-2020-9285İstismar yok | Some versions of Sonos One (1st and 2nd generation) allow partial or full memory access via attacker controlled hardware that can be attachesonos · one firmware · CWE-1191 | Orta6,8 | — | %0,5 | 20 Eki 2022 |
26İzleyin | CVE-2023-27353İstismar yok | This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-3sonos · one firmware · CWE-125 | Orta6,5 | — | %0,6 | 20 Nis 2023 |
26İzleyin | CVE-2023-27354İstismar yok | This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-3sonos · one firmware · CWE-190 | Orta6,5 | — | %0,6 | 20 Nis 2023 |
26İzleyin | CVE-2024-5268İstismar yok | Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Read Information Disclosure Vulnerabilitysonos · era 100 firmware · CWE-125 | Orta6,5 | — | %0,5 | 6 Haz 2024 |
24İzleyin | CVE-2023-50810İstismar yok | In certain Sonos products before Sonos S1 Release 11.12 and S2 release 15.9, a vulnerability exists in the U-Boot component of the firmware CWE-94 | Orta6,0 | — | %0,8 | 12 Ağu 2024 |
17İzleyin | CVE-2024-5256İstismar yok | Sonos Era 100 SMB2 Message Handling Integer Underflow Information Disclosure Vulnerabilitysonos · era 100 firmware · CWE-191 | Orta4,3 | — | %0,4 | 6 Haz 2024 |
- CVE-2022-2404941Planlayın
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Sonos One Speaker prior to 3.4.1 (S2 syste
KritikCVSS 9,8İstismar yokEPSS %7sonos · s118 Şub 2022
- CVE-2026-414939İzleyin
Sonos Era 300 SMB Response Out-Of-Bounds Access Remote Code Execution Vulnerability
KritikCVSS 9,8İstismar yokEPSS %1sonos · era 300 firmware10 Nis 2026
- CVE-2018-1131638İzleyin
The UPnP HTTP server on Sonos wireless speaker products allow unauthorized access via a DNS rebinding attack.
KritikCVSS 9,6İstismar yokEPSS %1sonos · sonos firmware3 Tem 2018
- CVE-2022-2404636İzleyin
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker prior to 3.4.1
YüksekCVSS 8,8İstismar yokEPSS %4sonos · s118 Şub 2022
- CVE-2024-526935İzleyin
Sonos Era 100 SMB2 Message Handling Use-After-Free Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1sonos · era 100 firmware6 Haz 2024
- CVE-2023-2735535İzleyin
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220.
YüksekCVSS 8,8İstismar yokEPSS %1sonos · one firmware20 Nis 2023
- CVE-2023-2735235İzleyin
This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Sonos One Speaker 70.3-35220.
YüksekCVSS 8,8İstismar yokEPSS %1sonos · one firmware20 Nis 2023
- CVE-2024-526735İzleyin
Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Write Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1sonos · era 100 firmware6 Haz 2024
- CVE-2025-104835İzleyin
Sonos Era 300 Speaker libsmb2 Use-After-Free Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1sonos · s123 Nis 2025
- CVE-2025-105035İzleyin
Sonos Era 300 Out-of-Bounds Write Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0sonos · s223 Nis 2025
- CVE-2025-104935İzleyin
Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0sonos · s123 Nis 2025
- CVE-2025-105135İzleyin
Sonos Era 300 Heap-based Buffer Overflow Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0sonos · era 300 firmware2 Haz 2025
- CVE-2023-5080931İzleyin
In certain Sonos products before S1 Release 11.12 and S2 release 15.9, the mt_7615.ko wireless driver does not properly validate an informat
YüksekCVSS 7,8İstismar yokEPSS %012 Ağu 2024
- CVE-2020-928527İzleyin
Some versions of Sonos One (1st and 2nd generation) allow partial or full memory access via attacker controlled hardware that can be attache
OrtaCVSS 6,8İstismar yokEPSS %0sonos · one firmware20 Eki 2022
- CVE-2023-2735326İzleyin
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-3
OrtaCVSS 6,5İstismar yokEPSS %1sonos · one firmware20 Nis 2023
- CVE-2023-2735426İzleyin
This vulnerability allows network-adjacent attackers to disclose sensitive information on affected installations of Sonos One Speaker 70.3-3
OrtaCVSS 6,5İstismar yokEPSS %1sonos · one firmware20 Nis 2023
- CVE-2024-526826İzleyin
Sonos Era 100 SMB2 Message Handling Out-Of-Bounds Read Information Disclosure Vulnerability
OrtaCVSS 6,5İstismar yokEPSS %0sonos · era 100 firmware6 Haz 2024
- CVE-2023-5081024İzleyin
In certain Sonos products before Sonos S1 Release 11.12 and S2 release 15.9, a vulnerability exists in the U-Boot component of the firmware
OrtaCVSS 6,0İstismar yokEPSS %112 Ağu 2024
- CVE-2024-525617İzleyin
Sonos Era 100 SMB2 Message Handling Integer Underflow Information Disclosure Vulnerability
OrtaCVSS 4,3İstismar yokEPSS %0sonos · era 100 firmware6 Haz 2024