Vulnerabilities (CVE)

Filtered by vendor Arcelikas Subscribe
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-13989 1 Arcelikas 2 Grundig Smart Inter\@ctive, Grundig Smart Inter\@ctive Firmware 2023-12-10 8.3 HIGH 8.8 HIGH
Grundig Smart Inter@ctive TV 3.0 devices allow CSRF attacks via a POST request to TCP port 8085 containing a predictable ID value, as demonstrated by a /sendrcpackage?keyid=-2544&keysymbol=-4081 request to shut off the device.