CVE-2019-11336: Sony Photo Sharing Plus

High severity, CVSS 8.1. EPSS: 3.2% chance of exploitation in the next 30 days.

Sony Bravia Smart TV devices allow remote attackers to retrieve the static Wi-Fi password (used when the TV is acting as an access point) by using the Photo Sharing Plus application to execute a backdoor API command, a different vulnerability than CVE-2019-10886.

Affected products

  • Sony Photo Sharing Plus: before pkg6.5629 (fixed in pkg6.5629)

Published 2019-05-14. Last modified 2026-06-17.