Sony kayıtları
sony üreticisine ait 75 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 14
- Düzeltme kaydı olan
- %1,3
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer6
- CWE-426 Untrusted Search Path6
- CWE-427 Uncontrolled Search Path Element5
- CWE-78 Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection')3
- CWE-306 Missing Authentication for Critical Function3
- CWE-352 Cross-Site Request Forgery (CSRF)2
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWEBug bounty kapsamı
Ürünün üreticisi herkese açık bir programda görünüyor. Eşleşme ad üzerinden yapıldı; kapsam metnini programda doğrulayın.
Tüm kayıtlar
75 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
45Planlayın | CVE-2007-3488Kavram kanıtı | Heap-based buffer overflow in the viewer ActiveX control in Sony Network Camera SNC-RZ25N before 1.30; SNC-P1 and SNC-P5 before 1.29; SNC-CSsony · sony network camera snc-p5 | Kritik10,0 | — | %16,2 | 29 Haz 2007 |
45Planlayın | CVE-2008-0748Kavram kanıtı | Buffer overflow in the Sony AxRUploadServer.AxRUploadControl.1 ActiveX control in AxRUploadServer.dll 1.0.0.38 in SonyISUpload.cab 1.0.0.38 sony · axruploadserver activex control · CWE-119 | Kritik10,0 | — | %16,2 | 13 Şub 2008 |
42Planlayın | CVE-2022-23747İstismar yok | In Sony Xperia series 1, 5, and Pro, an out of bound memory access can occur due to lack of validation of the number of frames being passed sony · xperia 1 firmware · CWE-120 | Kritik9,8 | — | %10,2 | 17 Ağu 2022 |
42Planlayın | CVE-2006-4289İstismar yok | Buffer overflow in Sony VAIO Media Server 2.x, 3.x, 4.x, and 5.x before 20060626 allows remote attackers to execute arbitrary code via unspesony · vaio media server | Kritik10,0 | — | %6,1 | 22 Ağu 2006 |
41Planlayın | CVE-2012-0985Kavram kanıtı | Multiple buffer overflows in the Wireless Manager ActiveX control 4.0.0.0 in WifiMan.dll in Sony VAIO PC Wireless LAN Wizard 1.0; VAIO Wirelsony · smartwi connection utillity · CWE-119 | Kritik9,3 | — | %13,0 | 7 Haz 2012 |
41Planlayın | CVE-2018-3938İstismar yok | An exploitable stack-based buffer overflow vulnerability exists in the 802dot1xclientcert.cgi functionality of Sony IPELA E Series Camera G5sony · snc-eb600 firmware · CWE-787 | Kritik10,0 | — | %3,3 | 14 Ağu 2018 |
40Planlayın | CVE-2007-5709Kavram kanıtı | Stack-based buffer overflow in Sony SonicStage CONNECT Player (CP) 4.3 allows remote attackers to execute arbitrary code via a long file namsony · sonicstage connect player · CWE-119 | Kritik9,3 | — | %10,9 | 30 Eki 2007 |
39İzleyin | CVE-2019-10844İstismar yok | nbla/logger.cpp in libnnabla.a in Sony Neural Network Libraries (aka nnabla) through v1.0.14 relies on the HOME environment variable, which sony · neural network libraries | Kritik9,8 | — | %1,6 | 4 Nis 2019 |
37İzleyin | CVE-2020-36885İstismar yok | Sony IPELA Network Camera 1.82.01 Remote Stack Buffer Overflow via ftpclient.cgisony · snc-dh120t firmware · CWE-787 | Kritik9,3 | — | %1,2 | 10 Ara 2025 |
36İzleyin | CVE-2016-7834Kavram kanıtı | SONY SNC-CH115, SNC-CH120, SNC-CH160, SNC-CH220, SNC-CH260, SNC-DH120, SNC-DH120T, SNC-DH160, SNC-DH220, SNC-DH220T, SNC-DH260, SNC-EB520, Ssony · snc series firmware · CWE-200 | Yüksek8,8 | — | %3,9 | 13 Nis 2017 |
36İzleyin | CVE-2017-2277İstismar yok | WG-C10 v3.0.79 and earlier allows an attacker to bypass access restrictions to obtain or alter information stored in the external storage cosony · wg-c10 firmware | Kritik9,1 | — | %1,1 | 21 Tem 2017 |
35İzleyin | CVE-2024-23934İstismar yok | Sony XAV-AX5500 WMV/ASF Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerabilitysony · xav-ax5500 · CWE-121 | Yüksek8,8 | — | %1,0 | 23 Eyl 2024 |
35İzleyin | CVE-2018-16593İstismar yok | The Photo Sharing Plus component on Sony Bravia TV through 8.587 devices allows Shell Metacharacter Injection.sony · r5c firmware · CWE-78 | Yüksek8,8 | — | %0,9 | 19 Haz 2019 |
35İzleyin | CVE-2016-7830İstismar yok | Sony PCS-XG100, PCS-XG100S, PCS-XG100C, PCS-XG77, PCS-XG77S, PCS-XG77C devices with firmware versions prior to Ver.1.51 and PCS-XC1 devices sony · pcs-xg100 firmware · CWE-306 | Yüksek8,8 | — | %0,7 | 9 Haz 2017 |
35İzleyin | CVE-2020-5589İstismar yok | SONY Wireless Headphones WF-1000X, WF-SP700N, WH-1000XM2, WH-1000XM3, WH-CH700N, WH-H900N, WH-XB700, WH-XB900N, WI-1000X, WI-C600N and WI-SPsony · wf-1000x firmware · CWE-306 | Yüksek8,8 | — | %0,6 | 9 Haz 2020 |
35İzleyin | CVE-2025-5478İstismar yok | Sony XAV-AX8500 Bluetooth SDP Protocol Integer Overflow Remote Code Execution Vulnerabilitysony · xav-ax8500 firmware · CWE-190 | Yüksek8,8 | — | %0,4 | 20 Haz 2025 |
35İzleyin | CVE-2025-5476İstismar yok | Sony XAV-AX8500 Bluetooth Improper Isolation Authentication Bypass Vulnerabilitysony · xav-ax8500 firmware · CWE-653 | Yüksek8,8 | — | %0,4 | 20 Haz 2025 |
35İzleyin | CVE-2025-5820İstismar yok | Sony XAV-AX8500 Bluetooth ERTM Channel Authentication Bypass Vulnerabilitysony · xav-ax8500 firmware · CWE-288 | Yüksek8,8 | — | %0,4 | 20 Haz 2025 |
34İzleyin | CVE-2012-2210Kavram kanıtı | The Sony Bravia TV KDL-32CX525 allows remote attackers to cause a denial of service (configuration outage or device crash) via a flood of TCsony · bravia tv · CWE-399 | Yüksek7,8 | — | %9,1 | 11 Nis 2012 |
33İzleyin | CVE-2019-11336İstismar yok | Sony Bravia Smart TV devices allow remote attackers to retrieve the static Wi-Fi password (used when the TV is acting as an access point) bysony · photo sharing plus · CWE-532 | Yüksek8,1 | — | %3,2 | 14 May 2019 |
32İzleyin | CVE-2017-10909İstismar yok | Untrusted search path vulnerability in Music Center for PC version 1.0.01 and earlier allows an attacker to gain privileges via a Trojan horsony · music center · CWE-426 | Yüksek7,8 | — | %1,9 | 22 Ara 2017 |
32İzleyin | CVE-2018-16594İstismar yok | The Photo Sharing Plus component on Sony Bravia TV through 8.587 devices allows Directory Traversal.sony · r5c firmware · CWE-22 | Yüksek8,1 | — | %0,9 | 19 Haz 2019 |
31İzleyin | CVE-2018-3937İstismar yok | An exploitable command injection vulnerability exists in the measurementBitrateExec functionality of Sony IPELA E Series Network Camera G5 fsony · snc-eb600 firmware · CWE-78 | Yüksek7,2 | — | %9,6 | 14 Ağu 2018 |
31İzleyin | CVE-2006-4235İstismar yok | Buffer overflow in the import project functionality in Sony SonicStage Mastering Studio 1.1.00 through 2.2.01 allows remote attackers to exesony · sonicstage mastering studio | Yüksek7,5 | — | %5,0 | 21 Ağu 2006 |
31İzleyin | CVE-2019-11890İstismar yok | Sony Bravia Smart TV devices allow remote attackers to cause a denial of service (device hang or reboot) via a SYN flood attack over a wiredsony · bravia firmware · CWE-400 | Yüksek7,5 | — | %4,4 | 9 Tem 2019 |
- CVE-2007-348845Planlayın
Heap-based buffer overflow in the viewer ActiveX control in Sony Network Camera SNC-RZ25N before 1.30; SNC-P1 and SNC-P5 before 1.29; SNC-CS
KritikCVSS 10,0Kavram kanıtıEPSS %16sony · sony network camera snc-p529 Haz 2007
- CVE-2008-074845Planlayın
Buffer overflow in the Sony AxRUploadServer.AxRUploadControl.1 ActiveX control in AxRUploadServer.dll 1.0.0.38 in SonyISUpload.cab 1.0.0.38
KritikCVSS 10,0Kavram kanıtıEPSS %16sony · axruploadserver activex control13 Şub 2008
- CVE-2022-2374742Planlayın
In Sony Xperia series 1, 5, and Pro, an out of bound memory access can occur due to lack of validation of the number of frames being passed
KritikCVSS 9,8İstismar yokEPSS %10sony · xperia 1 firmware17 Ağu 2022
- CVE-2006-428942Planlayın
Buffer overflow in Sony VAIO Media Server 2.x, 3.x, 4.x, and 5.x before 20060626 allows remote attackers to execute arbitrary code via unspe
KritikCVSS 10,0İstismar yokEPSS %6sony · vaio media server22 Ağu 2006
- CVE-2012-098541Planlayın
Multiple buffer overflows in the Wireless Manager ActiveX control 4.0.0.0 in WifiMan.dll in Sony VAIO PC Wireless LAN Wizard 1.0; VAIO Wirel
KritikCVSS 9,3Kavram kanıtıEPSS %13sony · smartwi connection utillity7 Haz 2012
- CVE-2018-393841Planlayın
An exploitable stack-based buffer overflow vulnerability exists in the 802dot1xclientcert.cgi functionality of Sony IPELA E Series Camera G5
KritikCVSS 10,0İstismar yokEPSS %3sony · snc-eb600 firmware14 Ağu 2018
- CVE-2007-570940Planlayın
Stack-based buffer overflow in Sony SonicStage CONNECT Player (CP) 4.3 allows remote attackers to execute arbitrary code via a long file nam
KritikCVSS 9,3Kavram kanıtıEPSS %11sony · sonicstage connect player30 Eki 2007
- CVE-2019-1084439İzleyin
nbla/logger.cpp in libnnabla.a in Sony Neural Network Libraries (aka nnabla) through v1.0.14 relies on the HOME environment variable, which
KritikCVSS 9,8İstismar yokEPSS %2sony · neural network libraries4 Nis 2019
- CVE-2020-3688537İzleyin
Sony IPELA Network Camera 1.82.01 Remote Stack Buffer Overflow via ftpclient.cgi
KritikCVSS 9,3İstismar yokEPSS %1sony · snc-dh120t firmware10 Ara 2025
- CVE-2016-783436İzleyin
SONY SNC-CH115, SNC-CH120, SNC-CH160, SNC-CH220, SNC-CH260, SNC-DH120, SNC-DH120T, SNC-DH160, SNC-DH220, SNC-DH220T, SNC-DH260, SNC-EB520, S
YüksekCVSS 8,8Kavram kanıtıEPSS %4sony · snc series firmware13 Nis 2017
- CVE-2017-227736İzleyin
WG-C10 v3.0.79 and earlier allows an attacker to bypass access restrictions to obtain or alter information stored in the external storage co
KritikCVSS 9,1İstismar yokEPSS %1sony · wg-c10 firmware21 Tem 2017
- CVE-2024-2393435İzleyin
Sony XAV-AX5500 WMV/ASF Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %1sony · xav-ax550023 Eyl 2024
- CVE-2018-1659335İzleyin
The Photo Sharing Plus component on Sony Bravia TV through 8.587 devices allows Shell Metacharacter Injection.
YüksekCVSS 8,8İstismar yokEPSS %1sony · r5c firmware19 Haz 2019
- CVE-2016-783035İzleyin
Sony PCS-XG100, PCS-XG100S, PCS-XG100C, PCS-XG77, PCS-XG77S, PCS-XG77C devices with firmware versions prior to Ver.1.51 and PCS-XC1 devices
YüksekCVSS 8,8İstismar yokEPSS %1sony · pcs-xg100 firmware9 Haz 2017
- CVE-2020-558935İzleyin
SONY Wireless Headphones WF-1000X, WF-SP700N, WH-1000XM2, WH-1000XM3, WH-CH700N, WH-H900N, WH-XB700, WH-XB900N, WI-1000X, WI-C600N and WI-SP
YüksekCVSS 8,8İstismar yokEPSS %1sony · wf-1000x firmware9 Haz 2020
- CVE-2025-547835İzleyin
Sony XAV-AX8500 Bluetooth SDP Protocol Integer Overflow Remote Code Execution Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0sony · xav-ax8500 firmware20 Haz 2025
- CVE-2025-547635İzleyin
Sony XAV-AX8500 Bluetooth Improper Isolation Authentication Bypass Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0sony · xav-ax8500 firmware20 Haz 2025
- CVE-2025-582035İzleyin
Sony XAV-AX8500 Bluetooth ERTM Channel Authentication Bypass Vulnerability
YüksekCVSS 8,8İstismar yokEPSS %0sony · xav-ax8500 firmware20 Haz 2025
- CVE-2012-221034İzleyin
The Sony Bravia TV KDL-32CX525 allows remote attackers to cause a denial of service (configuration outage or device crash) via a flood of TC
YüksekCVSS 7,8Kavram kanıtıEPSS %9sony · bravia tv11 Nis 2012
- CVE-2019-1133633İzleyin
Sony Bravia Smart TV devices allow remote attackers to retrieve the static Wi-Fi password (used when the TV is acting as an access point) by
YüksekCVSS 8,1İstismar yokEPSS %3sony · photo sharing plus14 May 2019
- CVE-2017-1090932İzleyin
Untrusted search path vulnerability in Music Center for PC version 1.0.01 and earlier allows an attacker to gain privileges via a Trojan hor
YüksekCVSS 7,8İstismar yokEPSS %2sony · music center22 Ara 2017
- CVE-2018-1659432İzleyin
The Photo Sharing Plus component on Sony Bravia TV through 8.587 devices allows Directory Traversal.
YüksekCVSS 8,1İstismar yokEPSS %1sony · r5c firmware19 Haz 2019
- CVE-2018-393731İzleyin
An exploitable command injection vulnerability exists in the measurementBitrateExec functionality of Sony IPELA E Series Network Camera G5 f
YüksekCVSS 7,2İstismar yokEPSS %10sony · snc-eb600 firmware14 Ağu 2018
- CVE-2006-423531İzleyin
Buffer overflow in the import project functionality in Sony SonicStage Mastering Studio 1.1.00 through 2.2.01 allows remote attackers to exe
YüksekCVSS 7,5İstismar yokEPSS %5sony · sonicstage mastering studio21 Ağu 2006
- CVE-2019-1189031İzleyin
Sony Bravia Smart TV devices allow remote attackers to cause a denial of service (device hang or reboot) via a SYN flood attack over a wired
YüksekCVSS 7,5İstismar yokEPSS %4sony · bravia firmware9 Tem 2019