RSS   Vulnerabilities for 'Roku firmware'   RSS

2018-07-03
 
CVE-2018-11314

CWE-20
 

 
The External Control API in Roku and Roku TV products allow unauthorized access via a DNS Rebind attack. This can result in remote device control and privileged device and network information to be exfiltrated by an attacker.

 


Copyright 2024, cxsecurity.com

 

Back to Top