Skip to main content

Vendor archive

logitech CVEs

Beta · best-effort

36 CVEs tagged to vendor logitech5 Critical, 7 High, 22 Medium, 2 Low, 0 Unrated.

CVE-2024-8258

Published Sep 10, 2024

Improper Control of Generation of Code ('Code Injection') in Electron Fuses in Logitech Options Plus version 1.60.496306 on macOS allows attackers to execute arbitrary code via in…

CVSS 2.0 · Low
Vendor/product tagsBeta · best-effort

CVE-2024-8011

Published Aug 25, 2024

Logitech Options+ on MacOS prior 1.72 allows a local attacker to inject dynamic library within Options+ runtime and abuse permissions granted by the user to Options+ such as Camer…

CVSS 2.0 · Low
Vendor/product tagsBeta · best-effort

CVE-2024-2537

Published Mar 15, 2024

Improper Control of Dynamically-Managed Code Resources vulnerability in Logitech Logi Tune on MacOS allows Local Code Inclusion.

CVSS 4.4 · Medium
Vendor/product tagsBeta · best-effort

CVE-2022-0916

Published May 3, 2022

An issue was discovered in Logitech Options. The OAuth 2.0 state parameter was not properly validated. This leaves applications vulnerable to CSRF attacks during authentication an…

CVSS 8.4 · High
Vendor/product tagsBeta · best-effort

CVE-2022-0915

Published Apr 12, 2022

There is a Time-of-check Time-of-use (TOCTOU) Race Condition Vulnerability in Logitech Sync for Windows prior to 2.4.574. Successful exploitation of these vulnerabilities may esca…

CVSS 6.0 · Medium
Vendor/product tagsBeta · best-effort

CVE-2019-13054

Published Jun 29, 2019

The Logitech R500 presentation clicker allows attackers to determine the AES key, leading to keystroke injection. On Windows, any text may be injected by using ALT+NUMPAD input to…

CVSS 6.5 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-25 of 36 CVEsPage 1 of 2