← Back

Roku Firmware

roku_firmware

Vendor: Roku • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Roku
1Roku Firmware
Nov 21, 2024
Jul 3, 2018
N/A· v4
9.6 CRITICAL· v3
9.3 HIGH· v2
The External Control API in Roku and Roku TV products allow unauthorized access via a DNS Rebind attack. This can result in remote device control and privileged device and network information to be exfiltrated by an atta...Show more
The External Control API in Roku and Roku TV products allow unauthorized access via a DNS Rebind attack. This can result in remote device control and privileged device and network information to be exfiltrated by an attacker.Show less