CyberSec.Space Logo
Back to CVE Browser

CVE-2018-3890

MEDIUM
6.8
CVSS Severity Score
EPSS Score0.1620%
EPSS Percentile38.08th
PublishedNov 2, 2018
Last ModifiedNov 21, 2024

Vulnerability Description

An exploitable code execution vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D. A specially crafted file can cause a logic flaw and command injection, resulting in code execution. An attacker can insert an SD card to trigger this vulnerability.

Affected Platforms (CPE)

💻
Yitechnology

Yi Home Camera Firmware

= 1.8.7.0d

References & Advisories

Related Vulnerabilities

CVE-2018-3890 Detail & Impact Analysis | CVSS 6.8 (MEDIUM) | Cyber-Sec.Space | Cyber-Sec.Space