CVE-2022-2471
Published: Sep 15, 2022
Modified: Sep 16, 2024
CVSS v3.1
9.9
Description
Stack-based Buffer Overflow vulnerability in the EZVIZ Motion Detection component as used in camera models CS-CV248, CS-C6N-A0-1C2WFR, CS-DB1C-A0-1E2W2FR, CS-C6N-B0-1G2WF, CS-C3W-A0-3H4WFRL allows a remote attacker to execute remote code on the device. This issue affects: EZVIZ CS-CV248 versions prior to 5.2.3 build 220725. EZVIZ CS-C6N-A0-1C2WFR versions prior to 5.3.0 build 220428. EZVIZ CS-DB1C-A0-1E2W2FR versions prior to 5.3.0 build 220802. EZVIZ CS-C6N-B0-1G2WF versions prior to 5.3.0 build 220712. EZVIZ CS-C3W-A0-3H4WFRL versions prior to 5.3.5 build 220723.
| Vendor | Product | Versions |
|---|---|---|
EZVIZ | CS-CV248 | affected unspecified - < 5.2.3 build 220725 |
EZVIZ | CS-C6N-A0-1C2WFR | affected unspecified - < 5.3.0 build 220428 |
EZVIZ | CS-DB1C-A0-1E2W2FR | affected unspecified - < 5.3.0 build 220802 |
EZVIZ | CS-C6N-B0-1G2WF | affected unspecified - < 5.3.0 build 220712 |
EZVIZ | CS-C3W-A0-3H4WFRL | affected unspecified - < 5.3.5 build 220723 |
Weaknesses (CWE)
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now