Vulnerabilities > Sonoff

DATE CVE VULNERABILITY TITLE RISK
2020-01-21 CVE-2020-7470 Cross-site Scripting vulnerability in Sonoff Th10 Firmware and Th16 Firmware
Sonoff TH 10 and 16 devices with firmware 6.6.0.21 allows XSS via the Friendly Name 1 field (after a successful login with the Web Admin Password).
network
sonoff CWE-79
3.5