Vulnerabilities > CVE-2021-27942 - Unspecified vulnerability in Vizio E50X-E1 Firmware and P65-F1 Firmware

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
vizio

Summary

Vizio P65-F1 6.0.31.4-2 and E50x-E1 10.0.31.4-2 Smart TVs allow a threat actor to execute arbitrary code from a USB drive via the Smart Cast functionality, because files on the USB drive are effectively under the web root and can be executed.

Vulnerable Configurations

Part Description Count
OS
Vizio
2
Hardware
Vizio
2