U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Vulnerability Change Records for CVE-2019-11336

Change History

Initial Analysis by NIST 5/21/2019 7:56:08 AM

Action Type Old Value New Value
Added CVSS V3

								
							
							
						
AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Added CVSS V2

								
							
							
						
(AV:N/AC:M/Au:N/C:P/I:N/A:N)
Added CWE

								
							
							
						
CWE-532
Added CPE Configuration

								
							
							
						
AND
     OR
          *cpe:2.3:a:sony:photo_sharing_plus:*:*:*:*:*:*:*:* versions up to (excluding) pkg6.5629
     OR
          cpe:2.3:h:sony:kdl-50w800c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:kdl-50w805c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:kdl-50w807c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:kdl-50w809c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:kdl-50w820c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:kdl-55w800c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:kdl-55w805c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:kdl-65w850c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:kdl-65w855c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:kdl-65w857c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:kdl-75w850c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:kdl-75w855c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:x7500d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-100z9d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-43x800d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-43x800e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-43x830c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-49x700d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-49x800c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-49x800d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-49x800e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-49x830c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-49x835c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-49x835d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-49x837c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-49x839c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-49x900e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55a1e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x700d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x800e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x805c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x806e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x807c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x809c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x810c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x850c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x850d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x855c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x855d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x857c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x857d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x900c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x900e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x905c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x907c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x930d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-55x930e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65a1e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x750d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x800c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x805c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x807c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x809c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x810c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x850c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x850d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x850e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x855c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x855d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x857c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x857d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x900c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x900e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x905c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x907c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x930c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x930d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x930e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x935d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65x937d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-65z9d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x850c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x850d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x850e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x855c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x855d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x857d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x900e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x910c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x940c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x940d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x940e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75x945c:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-75z9d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-77a1e:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-85x850d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-85x855d:-:*:*:*:*:*:*:*
          cpe:2.3:h:sony:xbr-85x857d:-:*:*:*:*:*:*:*
Changed Reference Type
http://packetstormsecurity.com/files/152612/Sony-Smart-TV-Information-Disclosure-File-Read.html No Types Assigned
http://packetstormsecurity.com/files/152612/Sony-Smart-TV-Information-Disclosure-File-Read.html Exploit, Third Party Advisory, VDB Entry
Changed Reference Type
http://seclists.org/fulldisclosure/2019/Apr/32 No Types Assigned
http://seclists.org/fulldisclosure/2019/Apr/32 Exploit, Mailing List, Third Party Advisory
Changed Reference Type
http://www.securityfocus.com/bid/108072 No Types Assigned
http://www.securityfocus.com/bid/108072 Third Party Advisory, VDB Entry
Changed Reference Type
https://seclists.org/bugtraq/2019/Apr/34 No Types Assigned
https://seclists.org/bugtraq/2019/Apr/34 Exploit, Mailing List, Third Party Advisory
Changed Reference Type
https://www.darkmatter.ae/xen1thlabs/sony-smart-tv-photo-sharing-plus-information-disclosure-vulnerability-xl-19-003/ No Types Assigned
https://www.darkmatter.ae/xen1thlabs/sony-smart-tv-photo-sharing-plus-information-disclosure-vulnerability-xl-19-003/ Exploit, Third Party Advisory