Vulnerabilidades en LG Electronics
24 resultadosAnálisis Vexday
A LG Electronics apresenta 23 vulnerabilidades catalogadas no Vexday, com 3 classificadas como críticas, mas nenhuma sob ataque ativo no momento. A ausência de divulgações recentes e a predominância de vulnerabilidades de traversal de diretório (CWE-22) sugerem um panorama de risco consolidado e sem escalações imediatas, embora a revisão periódica de mitigações seja recomendada.
CVE-2024-2863MEDIUMPath traversal via file upload on LG LED AssistantEPSS 64.0%CVE-2024-2862CRITICALPassword reset vulnerability without authorization on LG LED AssistantEPSS 51.0%CVE-2023-4613CRITICALUpload Directory Path Traversal Allows Unauthenticated Arbitrary File Read VulnerabilityEPSS 2.2%CVE-2023-4614CRITICALsetThumbnailRC Directory Path Traversal Allows Unauthenticated Arbitrary File Read VulnerabilityEPSS 2.1%CVE-2023-4616HIGHthumbnail Directory Path Traversal Allows Unauthenticated Arbitrary File Read VulnerabilityEPSS 1.3%CVE-2023-4615HIGHupdateFile Directory Path Traversal Allows Unauthenticated Arbitrary File Read VulnerabilityEPSS 1.3%CVE-2024-1885MEDIUMRemote Code Execution attack on LG SignageEPSS 0.9%CVE-2024-1886LOWAbsolute path traversal attack on LG SignageEPSS 0.8%CVE-2025-10204HIGHUnauth Admin Reset Password on AC Smart IIEPSS 0.5%CVE-2024-6179MEDIUMXSS vulnerability in LG SuperSign CMSEPSS 0.3%CVE-2024-6177MEDIUMXSS vulnerability in LG SuperSign CMSEPSS 0.3%CVE-2024-6178MEDIUMXSS vulnerability in LG SuperSign CMSEPSS 0.3%CVE-2024-6176MEDIUMPort scanning vulnerability in LG SuperSign CMSEPSS 0.2%CVE-2020-7807MEDIUMDLL Hijacking Vulnerabilities During Installation of LG Electronics SoftwareEPSS 0.2%CVE-2026-15929HIGHImproper neutralization of special elements used in an SQL command ('SQL injection') vulnerability in LG Electronics SmartShare allows SQL IEPSS 0.2%CVE-2023-44123MEDIUMBluetooth - Theft and (over-)write of arbitrary files with system privilege via PendingIntent hijackingEPSS 0.1%CVE-2023-44125MEDIUMPersonalized service - Theft and (over-)write of arbitrary files with system privilege via PendingIntent hijackingEPSS 0.1%CVE-2023-44126LOWCall management - Implicit intents disclose telephony data such as phone numbers, call states, contactsEPSS 0.1%CVE-2023-44127LOWCall management - Implicit activity intents disclose contact details and phone numbersEPSS 0.1%CVE-2023-44121MEDIUMLG ThinQ Service - Intent redirection with system privilege/LaunchAnyWhereEPSS 0.1%