Vulnerabilities (CVE)

Filtered by vendor Dji Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-29945 1 Dji 22 Air 2, Air 2 Firmware, Air 2s and 19 more 2024-02-04 5.0 MEDIUM 7.5 HIGH
DJI drone devices sold in 2017 through 2022 broadcast unencrypted information about the drone operator's physical location via the AeroScope protocol.
CVE-2020-29664 1 Dji 2 Mavic 2, Mavic 2 Firmware 2024-02-04 7.2 HIGH 7.8 HIGH
A command injection issue in dji_sys in DJI Mavic 2 Remote Controller before firmware version 01.00.0510 allows for code execution via a malicious firmware upgrade packet.
CVE-2007-1074 1 Dji 1 Newsbin Pro 2024-02-04 9.3 HIGH N/A
Multiple buffer overflows in NewsBin Pro 5.33 and NewsBin Pro 4.x allow user-assisted remote attackers to execute arbitrary code via a long (1) DataPath or (2) DownloadPath attributed in a (a) NBI file, or (3) a long group field in a (b) NZB file.