Wemo home automation firmware
This hub aggregates every CVE we track for Wemo home automation firmware, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
5
CVEs tracked
2
Critical
3
High
0
In CISA KEV
Severity distribution
HIGH3CRITICAL2
Monthly trend
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
0
2024-102026-09
Latest CVEs
The 5 most recently published vulnerabilities affecting Wemo home automation firmware.
- CVE-2013-6950The Belkin WeMo Home Automation firmware before 3949 does not use SSL for the distribution feed, which allows man-in-the-middle attackers to install arbitrary firmware by spoofing a distribution se...7.8
- CVE-2013-6948The peerAddresses API in the Belkin WeMo Home Automation firmware before 3949 allows remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjun...7.8
- CVE-2013-6949The Belkin WeMo Home Automation firmware before 3949 does not properly use the STUN and TURN protocols, which allows remote attackers to hijack connections and possibly have unspecified other impac...9.3
- CVE-2013-6952The Belkin WeMo Home Automation firmware before 3949 has a hardcoded GPG key, which makes it easier for remote attackers to spoof firmware updates and execute arbitrary code via crafted signed data.10.0
- CVE-2013-6951The Belkin WeMo Home Automation firmware before 3949 does not maintain a set of Certification Authority public keys, which allows man-in-the-middle attackers to spoof SSL servers via an arbitrary X...7.1
Product normalization is registry-driven with AI assist and human review. How it works