漏洞信息详情
Sony Photo Sharing Plus application 访问控制错误漏洞
漏洞简介
Sony Photo Sharing Plus application是日本索尼(Sony)公司的一款用于保存、管理、分享图像和视频的应用程序。
使用PKG6.5629之前版本固件的Sony Photo Sharing Plus应用程序存在访问控制错误漏洞,该漏洞源于网络系统或产品未正确限制来自未授权角色的资源访问。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://www.sony.com/electronics/support/televisions-projectors/downloads/00015771
参考网址
来源:CONFIRM
链接:https://www.sony.com/electronics/support/televisions-projectors/downloads/00015771
来源:MISC
链接:http://packetstormsecurity.com/files/152612/Sony-Smart-TV-Information-Disclosure-File-Read.html
来源:BID
链接:http://www.securityfocus.com/bid/108072
来源:seclists.org
链接:https://seclists.org/bugtraq/2019/Apr/34
来源:www.sony.com
链接:https://www.sony.com/electronics/support/downloads/00016043
来源:www.sony.com
链接:https://www.darkmatter.ae/blogs/security-flaws-uncovered-in-sony-smart-tvs/
来源:FULLDISC
链接:http://seclists.org/fulldisclosure/2019/Apr/32
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/152612/Sony-Smart-TV-Information-Disclosure-File-Read.html
来源:www.darkmatter.ae
链接:https://www.darkmatter.ae/xen1thlabs/sony-smart-tv-photo-sharing-plus-arbitrary-file-read-vulnerability-xl-19-002/
来源:www.securityfocus.com
链接:https://www.securityfocus.com/bid/108072
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2019-10886
受影响实体
暂无
补丁
- Sony Photo Sharing Plus application 信息泄露漏洞的修复措施<!--2019-4-19-->
还没有评论,来说两句吧...