Note:
This project will be discontinued after December 13, 2021. [more]
Product:
Cam_2_firmware
(Owletcare)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 3 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2024-05-15 | CVE-2023-6321 | A command injection vulnerability exists in the IOCTL that manages OTA updates. A specially crafted command can lead to command execution as the root user. An attacker can make authenticated requests to trigger this vulnerability. | Cam_2_firmware, Cam_firmware, Kalay_platform | 8.8 | ||
2024-05-15 | CVE-2023-6323 | ThroughTek Kalay SDK does not verify the authenticity of received messages, allowing an attacker to impersonate an authoritative server. | Cam_2_firmware, Cam_firmware, Indoor_camera_se_firmware, Kalay_platform, Cam_v3_firmware | 6.5 | ||
2024-05-15 | CVE-2023-6324 | ThroughTek Kalay SDK uses a predictable PSK value in the DTLS session when encountering an unexpected PSK identity | Cam_2_firmware, Cam_firmware, Indoor_camera_se_firmware, Kalay_platform, Cam_v3_firmware | 8.8 |