What is CVE-2026-15570?
CVE-2026-15570 is an improper restriction of URL schemes and destinations in the SmartCenter browserseturl command on Telefunken smart TVs. An attacker on the same local network can cause the embedded browser to issue requests to arbitrary destinations. Applying the vendor's security update is recommended.
Azərbaycanca: CVE-2026-15570, Telefunken smart televizorlarında URL sxemlərinin düzgün məhdudlaşdırılmaması zəifliyidir. Eyni lokal şəbəkədə olan hücumçu `browserseturl` əmri vasitəsilə daxili brauzeri istədiyi istiqamətə yönləndirə bilər. İstehsalçının təhlükəsizlik yeniləməsini tətbiq etmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-918
FAQ2
Where must an attacker be located to exploit CVE-2026-15570?
An attacker must be on the same local network as the target Telefunken smart TV.
Which command is exploited through CVE-2026-15570?
The vulnerability is exploited via the `browserseturl` command.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.