sony
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting sony.
- CVE-2026-18284Sony XAV-9500ES Crash Dump Handler Command Injection Local Privilege Escalation Vulnerability7.8
- CVE-2026-18283Sony XAV-9500ES udev USB Rules Authorization Bypass Vulnerability2.4
- CVE-2026-18282Sony XAV-9500ES AVRCP_Br_Response_Parser Heap-based Buffer Overflow Remote Code Execution Vulnerability8.0
- CVE-2026-18281Sony XAV-9500ES l2_reassemble_sdu Heap-based Buffer Overflow Remote Code Execution Vulnerability8.0
- CVE-2026-18280Sony XAV-9500ES gpsd Buffer Overflow Arbitrary Code Execution Vulnerability3.9
- CVE-2026-18279Sony XAV-9500ES RTSP SETUP Buffer Overflow Remote Code Execution Vulnerability8.8
- CVE-2026-18278Sony XAV-9500ES prh_l2_decode_packet Out-Of-Bounds Read Information Disclosure Vulnerability3.5
- CVE-2025-64390A privilege escalation vulnerability exists in PlayStation 4 firmware versions 13.00 through 13.02. The BD-J (Blu-ray Disc Java) sandbox can be escaped through a malformed JAR file.7.4
- CVE-2020-36924Sony BRAVIA Digital Signage 1.7.8 Unauthenticated Remote File Inclusion6.1
- CVE-2020-36923Sony BRAVIA Digital Signage 1.7.8 Client-Side Protection Bypass via IDOR9.8
- CVE-2020-36922Sony BRAVIA Digital Signage 1.7.8 Unauthenticated System API Information Disclosure7.5
- CVE-2020-36885Sony IPELA Network Camera 1.82.01 Remote Stack Buffer Overflow via ftpclient.cgi9.8
- CVE-2025-64730Cross-site scripting vulnerability exists in SNC-CX600W all versions. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who accessed the product.6.1
- CVE-2025-62497Cross-site request forgery vulnerability exists in SNC-CX600W versions prior to Ver.2.8.0. If a user accesses a specially crafted webpage while logged in, unintended operations may be performed.6.5
- CVE-2025-5475Sony XAV-AX8500 Bluetooth Packet Handling Integer Overflow Remote Code Execution Vulnerability7.5