A flaw in the Universal Plug and Play protocol could potentially affect billions of internet-connected devices. The vulnerability, dubbed CallStranger, can be found in billions of UPnP devices, says Yunus adrc, cyber security senior manager with EY Turkey, who uncovered the issue. 21 devices have been confirmed vulnerable including Windows 10 PCs, Xbox One, smart TVs, printers and routers. A patch is available but it could take vendors an extended period of time to apply it to their devices.”]
Source: https://www.govinfosecurity.com/upnp-vulnerability-could-affect-billions-iot-devices-a-14413