Chumby developed internet-connected digital picture frames and home devices such as the Chumby Classic and Chumby One, which exposed a modestly represented attack surface around embedded device management and media interfaces. The durable signal in its vulnerability disclosures centers on OS command injection weaknesses, reflecting input-handling risks in the device's scripting and automation layers.
The number and severity of CVEs published that impact products developed by Chumby over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2010-0418HIGH The web interface in chumby one before 1.0.4 and chumby classic before 1.7.2 allows remote attackers to execute arbitrary commands via shell metacharacters in a request. | Mar 10, 2010 | 10.0 | 28 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Chumby.
Media articles that mention a CVE ID that affects a product developed by Chumby — matched by CVE ID, not by vendor name.