VYPR
Vendor

JBL

Products
6
CVEs
3
Across products
6
Status
Private

Products

6

Recent CVEs

3
  • CVE-2021-28155MedSep 7, 2021
    risk 0.42cvss 6.5epss 0.00

    The Bluetooth Classic implementation on JBL TUNE500BT devices does not properly handle the reception of continuous unsolicited LMP responses, allowing attackers in radio range to trigger a denial of service and shutdown a device by flooding the target device with LMP Feature…

  • CVE-2023-37215MedJul 30, 2023
    risk 0.40cvss 6.2epss 0.00

    JBL soundbar multibeam 5.1 - CWE-798: Use of Hard-coded Credentials

  • CVE-2021-38548MedAug 11, 2021
    risk 0.38cvss 5.9epss 0.01

    JBL Go 2 devices through 2021-08-09 allow remote attackers to recover speech signals from an LED on the device, via a telescope and an electro-optical sensor, aka a "Glowworm" attack. The power indicator LED of the speakers is connected directly to the power line, as a result,…