CyberSec.Space Logo
CVEブラウザに戻る

CVE-2018-3892

HIGH
8.1
CVSS Severity Score
EPSS Score0.0380%
EPSS Percentile5.54th
Published2018年11月2日
Last Modified2024年11月21日

Vulnerability Description

An exploitable firmware downgrade vulnerability exists in the time syncing functionality of Yi Home Camera 27US 1.8.7.0D. A specially crafted packet can cause a buffer overflow, resulting in code execution. An attacker can intercept and alter network traffic to trigger this vulnerability.

Affected Platforms (CPE)

💻
Yitechnology

Yi Home Camera Firmware

= 1.8.7.0d

References & Advisories

関連する脆弱性情報

CVE-2018-3892 Detail & Impact Analysis | CVSS 8.1 (HIGH) | Cyber-Sec.Space | Cyber-Sec.Space