Picocom is a lightweight serial terminal emulator designed for direct device communication and embedded systems debugging, with its vulnerability profile centered on the single picocom product. The durable signal reflects its command-line interface role, with observed weakness classes focused on improper neutralization of special elements in command injection scenarios. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Picocom Project over time
Signals from CVEs in this vendor scope (1 CVEs).
1 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-9059CRITICAL picocom before 2.0 has a command injection vulnerability in the 'send and receive file' command because the command line is executed by /bin/sh unsafely. | May 28, 2017 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (1 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Picocom Project.
Media articles that mention a CVE ID that affects a product developed by Picocom Project — matched by CVE ID, not by vendor name.