CVE-2019-17532: Belkin Wemo Switch 28b Firmware

High severity, CVSS 7.5. EPSS: 1.6% chance of exploitation in the next 30 days.

An issue was discovered on Belkin Wemo Switch 28B WW_2.00.11057.PVT-OWRT-SNS devices. They allow remote attackers to cause a denial of service (persistent rules-processing outage) via a crafted ruleDbBody element in a StoreRules request to the upnp/control/rules1 URI, because database corruption occurs.

Affected products

  • Belkin Wemo Switch 28b Firmware: version wemo_ww_2.00.11057.pvt-owrt-sns only

Published 2019-10-12. Last modified 2026-06-17.