logo

Update: DHS Looking Into Cyber Risk from TCL Smart TVs

ID: ee614cd5-324c-5458-b3b0-7b6d588a9a06

STIX ID: report--ee614cd5-324c-5458-b3b0-7b6d588a9a06

Feed Name: Security Ledger

Threat Score
70/100

Date Published: 2020-12-22

Date Updated: 2026-05-08

Author: Paul Roberts

...
...

Researchers disclosed two serious vulnerabilities in TCL Android smart TVs that could allow an unprivileged remote attacker to download system files, images and application tokens (CVE-2020-27403) and allow local unprivileged attackers to read/write critical vendor resource directories including upgrade folders (CVE-2020-28055); the issues raised concerns about TCL’s remote maintenance capabilities acting as a backdoor, prompting DHS review, while TCL says it patched affected builds and disputes claims of a deliberate backdoor.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.