CVE-2019-3984
3Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 3.8%
exploitation probability
3.8%top 11% of all CVEs
observed exploitation
nono source reports it
Blink XT2 Sync Module firmware prior to 2.13.11 allows remote attackers to execute arbitrary commands on the device due to improperly sanitized input when the device retrieves updates scripts from the internet.
Affected products
Amazon · Blink XT2 Sync Module firmware