CVE-2022-27152
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
08/04/2022
Last modified:
29/08/2023
Description
Roku devices running RokuOS v9.4.0 build 4200 or earlier that uses a Realtek WiFi chip is vulnerable to Arbitrary file modification.
Impact
Base Score 3.x
5.70
Severity 3.x
MEDIUM
Base Score 2.0
2.70
Severity 2.0
LOW
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:o:roku:roku_os:*:*:*:*:*:*:*:* | 9.4.0 (including) | |
cpe:2.3:h:roku:express:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:roku:express_4k\+:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:roku:roku_tv:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:roku:streambar:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:roku:streambar_pro:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:roku:streaming_stick_4k:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:roku:streaming_stick_4k\+:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:roku:ultra:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:roku:wireless_speakers:-:*:*:*:*:*:*:* | ||
cpe:2.3:h:roku:wireless_subwoofer:-:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page