Lucene search

K
nvd[email protected]NVD:CVE-2020-21405
HistoryJul 20, 2022 - 7:15 p.m.

CVE-2020-21405

2022-07-2019:15:08
CWE-400
web.nvd.nist.gov
3
h96 smart tv box
h96 pro plus
file corruption
savedeepcolorattr service

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

36.8%

An issue was discovered in H96 Smart TV Box H96 Pro Plus allows attackers to corrupt files via calls to the saveDeepColorAttr service.unk

Affected configurations

Nvd
Node
h96tvboxh96_pro_plusMatch-
AND
h96tvboxh96_pro_plus_firmwareMatch-
VendorProductVersionCPE
h96tvboxh96_pro_plus-cpe:2.3:h:h96tvbox:h96_pro_plus:-:*:*:*:*:*:*:*
h96tvboxh96_pro_plus_firmware-cpe:2.3:o:h96tvbox:h96_pro_plus_firmware:-:*:*:*:*:*:*:*

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

EPSS

0.001

Percentile

36.8%

Related for NVD:CVE-2020-21405