Vulnerabilities (CVE)

Filtered by vendor Roku Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-27152 1 Roku 11 Express, Express 4k\+, Roku Os and 8 more 2023-12-10 2.7 LOW 5.7 MEDIUM
Roku devices running RokuOS v9.4.0 build 4200 or earlier that uses a Realtek WiFi chip is vulnerable to Arbitrary file modification.
CVE-2018-11314 1 Roku 2 Roku, Roku Firmware 2023-12-10 9.3 HIGH 9.6 CRITICAL
The External Control API in Roku and Roku TV products allow unauthorized access via a DNS Rebind attack. This can result in remote device control and privileged device and network information to be exfiltrated by an attacker.