CVE-2019-13055: Logitech k360 Firmware

Medium severity, CVSS 6.5. EPSS: 1% chance of exploitation in the next 30 days.

Certain Logitech Unifying devices allow attackers to dump AES keys and addresses, leading to the capability of live decryption of Radio Frequency transmissions, as demonstrated by an attack against a Logitech K360 keyboard.

Affected products

  • Logitech k360 Firmware: affected versions not specified
  • Logitech Unifying Receiver Firmware: affected versions not specified

Published 2019-06-29. Last modified 2026-06-17.