8.1

CVE-2019-11336

Exploit
Sony Bravia Smart TV devices allow remote attackers to retrieve the static Wi-Fi password (used when the TV is acting as an access point) by using the Photo Sharing Plus application to execute a backdoor API command, a different vulnerability than CVE-2019-10886.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SonyPhoto Sharing Plus Version < pkg6.5629
   SonyKdl-50w800c Version-
   SonyKdl-50w805c Version-
   SonyKdl-50w807c Version-
   SonyKdl-50w809c Version-
   SonyKdl-50w820c Version-
   SonyKdl-55w800c Version-
   SonyKdl-55w805c Version-
   SonyKdl-65w850c Version-
   SonyKdl-65w855c Version-
   SonyKdl-65w857c Version-
   SonyKdl-75w850c Version-
   SonyKdl-75w855c Version-
   SonyX7500d Version-
   SonyXbr-100z9d Version-
   SonyXbr-43x800d Version-
   SonyXbr-43x800e Version-
   SonyXbr-43x830c Version-
   SonyXbr-49x700d Version-
   SonyXbr-49x800c Version-
   SonyXbr-49x800d Version-
   SonyXbr-49x800e Version-
   SonyXbr-49x830c Version-
   SonyXbr-49x835c Version-
   SonyXbr-49x835d Version-
   SonyXbr-49x837c Version-
   SonyXbr-49x839c Version-
   SonyXbr-49x900e Version-
   SonyXbr-55a1e Version-
   SonyXbr-55x700d Version-
   SonyXbr-55x800e Version-
   SonyXbr-55x805c Version-
   SonyXbr-55x806e Version-
   SonyXbr-55x807c Version-
   SonyXbr-55x809c Version-
   SonyXbr-55x810c Version-
   SonyXbr-55x850c Version-
   SonyXbr-55x850d Version-
   SonyXbr-55x855c Version-
   SonyXbr-55x855d Version-
   SonyXbr-55x857c Version-
   SonyXbr-55x857d Version-
   SonyXbr-55x900c Version-
   SonyXbr-55x900e Version-
   SonyXbr-55x905c Version-
   SonyXbr-55x907c Version-
   SonyXbr-55x930d Version-
   SonyXbr-55x930e Version-
   SonyXbr-65a1e Version-
   SonyXbr-65x750d Version-
   SonyXbr-65x800c Version-
   SonyXbr-65x805c Version-
   SonyXbr-65x807c Version-
   SonyXbr-65x809c Version-
   SonyXbr-65x810c Version-
   SonyXbr-65x850c Version-
   SonyXbr-65x850d Version-
   SonyXbr-65x850e Version-
   SonyXbr-65x855c Version-
   SonyXbr-65x855d Version-
   SonyXbr-65x857c Version-
   SonyXbr-65x857d Version-
   SonyXbr-65x900c Version-
   SonyXbr-65x900e Version-
   SonyXbr-65x905c Version-
   SonyXbr-65x907c Version-
   SonyXbr-65x930c Version-
   SonyXbr-65x930d Version-
   SonyXbr-65x930e Version-
   SonyXbr-65x935d Version-
   SonyXbr-65x937d Version-
   SonyXbr-65z9d Version-
   SonyXbr-75x850c Version-
   SonyXbr-75x850d Version-
   SonyXbr-75x850e Version-
   SonyXbr-75x855c Version-
   SonyXbr-75x855d Version-
   SonyXbr-75x857d Version-
   SonyXbr-75x900e Version-
   SonyXbr-75x910c Version-
   SonyXbr-75x940c Version-
   SonyXbr-75x940d Version-
   SonyXbr-75x940e Version-
   SonyXbr-75x945c Version-
   SonyXbr-75z9d Version-
   SonyXbr-77a1e Version-
   SonyXbr-85x850d Version-
   SonyXbr-85x855d Version-
   SonyXbr-85x857d Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.59% 0.685
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 8.1 2.2 5.9
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:P/I:N/A:N
CWE-532 Insertion of Sensitive Information into Log File

The product writes sensitive information to a log file.