Remote Access Vulnerability in Sony Bravia Smart TVs via Photo Sharing Plus
CVE-2019-11336

8.1HIGH

Key Information:

Vendor

Sony

Vendor
CVE Published:
14 May 2019

What is CVE-2019-11336?

Sony Bravia Smart TV devices are susceptible to a remote access vulnerability that allows attackers to exploit the Photo Sharing Plus application to execute backdoor API commands. This exploitation enables unauthorized retrieval of the static Wi-Fi password, compromising the security of the network when the TV operates as an access point. Security measures should be taken to mitigate potential risks associated with this vulnerability.

References

CVSS V3.1

Score:
8.1
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.
CVE-2019-11336 : Remote Access Vulnerability in Sony Bravia Smart TVs via Photo Sharing Plus