
Here are examples of CVEs enabling RCE in smart TVs: - CVE-2023-6318 (LG webOS): Command injection for root access. Affects models like OLED55CXPUA (webOS 5.5.0) and LG43UM7000PLA (webOS 4.9.7-5.30.40). Exploitable remotely via exposed services. - CVE-2023-6319: OS command injection, same affected LG models/versions. Patched in 2024; update firmware. For TCL Android TVs, CVE-2020-28055 impacts models like 55S434, but RCE unconfirmed in details.
Post summary
The text lists LG smart TV CVEs that allow remote command injection and notes they have been patched in 2024 with firmware updates. No proof of exploitation or PoC is mentioned.
