Vulnerabilities > LG > High

DATE CVE VULNERABILITY TITLE RISK
2019-05-13 CVE-2019-7404 Missing Authentication for Critical Function vulnerability in LG products
An issue was discovered on LG GAMP-7100, GAPM-7200, and GAPM-8000 routers.
network
low complexity
lg CWE-306
7.5
2019-02-18 CVE-2019-8372 Link Following vulnerability in LG Lha.Sys
The LHA.sys driver before 1.1.1811.2101 in LG Device Manager exposes functionality that allows low-privileged users to read and write arbitrary physical memory via specially crafted IOCTL requests and elevate system privileges.
local
high complexity
lg CWE-59
7.0
2018-09-14 CVE-2018-16706 Forced Browsing vulnerability in LG Supersign CMS
LG SuperSign CMS allows TVs to be rebooted remotely without authentication via a direct HTTP request to /qsr_server/device/reboot on port 9080.
network
low complexity
lg CWE-425
7.5
2018-09-14 CVE-2018-16288 Information Exposure vulnerability in LG Supersign CMS 2.5
LG SuperSign CMS allows reading of arbitrary files via signEzUI/playlist/edit/upload/..%2f URIs.
network
low complexity
lg CWE-200
8.6
2018-09-12 CVE-2018-16946 Files or Directories Accessible to External Parties vulnerability in LG products
LG LNB*, LND*, LNU*, and LNV* smart network camera devices have broken access control.
network
low complexity
lg CWE-552
7.5