logo

McAfee Researchers Exploit Smart Plug to attack Smart TV!

ID: a63f9490-e01d-5d6e-b23f-06609d539c40

STIX ID: report--a63f9490-e01d-5d6e-b23f-06609d539c40

Feed Name: Security Ledger

Threat Score
60/100

Date Published: 2018-08-24

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

Researchers at McAfee disclosed a buffer overflow vulnerability in the Wemo Insight smart plug (CVE-2018-6692) that allows remote code execution; their proof-of-concept demonstrates using the compromised plug to punch UPnP holes in a router and pivot to control other devices on the same network (for example, a TCL smart TV via an unauthenticated Roku API), enabling stealthy remote access and lateral movement.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.