-Infinity
0

LG webOSPIN/prompt bypass on the secondscreen.gateway service allows access to the SSAP API without user interaction

First published (updated )

LG webOSCommand injection in the processAnalyticsReport method from the com.webos.service.cloudupload service

First published (updated )

LG webOSCommand injection in the getAudioMetadata method from the com.webos.service.attachedstoragemanager service

First published (updated )

LG webOSCommand injection in the com.webos.service.connectionmanager/tv/setVlanStaticAddress endpoint

First published (updated )

LG N1A1 FirmwareLG N1A1 NAS Remote Command Execution Vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

LG Simple Editor(0Day) LG Simple Editor copyTemplateAll Directory Traversal Information Disclosure Vulnerability

7.5
First published (updated )

LG LED AssistantupdateFile Directory Path Traversal Allows Unauthenticated Arbitrary File Read Vulnerability

7.5
First published (updated )

LG LED Assistantthumbnail Directory Path Traversal Allows Unauthenticated Arbitrary File Read Vulnerability

7.5
First published (updated )

LG LED AssistantUpload Directory Path Traversal Allows Unauthenticated Arbitrary File Read Vulnerability

First published (updated )

LG LED AssistantsetThumbnailRC Directory Path Traversal Allows Unauthenticated Arbitrary File Read Vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

LG Smart ShareWhen LG SmartShare is installed, local privilege escalation is possible through DLL Hijacking attack…

7.8
First published (updated )

Lg Lha.sysThe LHA.sys driver before 1.1.1811.2101 in LG Device Manager exposes functionality that allows low-p…

First published (updated )

AndroidLG ThinQ Service - Intent redirection with system privilege/LaunchAnyWhere

First published (updated )

AndroidMessaging - Gaining access to arbitrary content providers via QClipIntentReceiverActivity

3.6
First published (updated )

AndroidLockScreenSettings - Theft arbitrary files with system privilege

7.8
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

AndroidBluetooth - Theft and (over-)write of arbitrary files with system privilege via PendingIntent hijacking

7.8
First published (updated )

AndroidScreen recording - Theft of arbitrary files with system privilege

First published (updated )

AndroidPersonalized service - Theft and (over-)write of arbitrary files with system privilege via PendingIntent hijacking

7.8
First published (updated )

AndroidCall management - Implicit intents disclose telephony data such as phone numbers, call states, contacts

First published (updated )

AndroidCall management - Implicit activity intents disclose contact details and phone numbers

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

AndroidLGInstallService - Deletion of arbitrary files with system privilege

First published (updated )

LG Simple Editor(0Day) LG Simple Editor UserManageController getImageByFilename Directory Traversal Information Disclosure Vulnerability

First published (updated )

LG Simple Editor(0Day) LG Simple Editor joinAddUser Improper Input Validation Denial-of-Service Vulnerability

7.5
First published (updated )

LG Simple Editor(0Day) LG Simple Editor FileManagerController getImageByFilename Directory Traversal Information Disclosure Vulnerability

First published (updated )

LG Simple Editor(0Day) LG Simple Editor PlayerController getImageByFilename Directory Traversal Information Disclosure Vulnerability

First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

LG Simple Editor(0Day) LG Simple Editor copyContent XML External Entity Processing Information Disclosure Vulnerability

7.5
First published (updated )

LG Simple Editor(0Day) LG Simple Editor deleteCanvas Directory Traversal Arbitrary File Deletion Vulnerability

8.2
First published (updated )

LG Simple Editor(0Day) LG Simple Editor copyContent Exposed Dangerous Function Remote Code Execution Vulnerability

First published (updated )

LG Simple Editor(0Day) LG Simple Editor putCanvasDB Directory Traversal Arbitrary File Deletion Vulnerability

8.2
First published (updated )

LG Simple Editor(0Day) LG Simple Editor copyContent XML External Entity Processing Information Disclosure Vulnerability

7.5
First published (updated )

Never miss a vulnerability like this again

Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2025 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203