7.2
CVSSv2

CVE-2021-27942

Published: 03/08/2021 Updated: 11/08/2021
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
CVSS v3 Base Score: 6.8 | Impact Score: 5.9 | Exploitability Score: 0.9
VMScore: 641
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Vizio P65-F1 6.0.31.4-2 and E50x-E1 10.0.31.4-2 Smart TVs allow a threat actor to execute arbitrary code from a USB drive via the Smart Cast functionality, because files on the USB drive are effectively under the web root and can be executed.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

vizio p65-f1_firmware 6.0.31.4-2

vizio e50x-e1_firmware 10.0.31.4-2