VendorsBosesoundtouchany version
Vulnerabilities

Bose SoundTouch any version

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2017-17751
Bose SoundTouch devices allows remote attackers to achieve remote control via a crafted web site that uses the WebSocket Protocol.
Published 2018-03-24 · Modified
8.8EPSS 0.010
CVE-2017-17749
Bose SoundTouch devices allow XSS via crafted song data from a music service, as demonstrated by Pandora.
Published 2018-03-24 · Modified
5.4EPSS 0.005
CVE-2017-17750
Bose SoundTouch devices allow XSS via a crafted public playlist from Spotify.
Published 2018-03-24 · Modified
5.4EPSS 0.005