CVE Vulnerabilities

CVE-2021-27942

Published: Aug 03, 2021 | Modified: Aug 11, 2021
CVSS 3.x
6.8
MEDIUM
Source:
NVD
CVSS:3.1/AV:P/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Vizio P65-F1 6.0.31.4-2 and E50x-E1 10.0.31.4-2 Smart TVs allow a threat actor to execute arbitrary code from a USB drive via the Smart Cast functionality, because files on the USB drive are effectively under the web root and can be executed.

Affected Software

Name Vendor Start Version End Version
P65-f1_firmware Vizio 6.0.31.4-2 (including) 6.0.31.4-2 (including)

References