ZeroHour

CVE-2023-38027

CVSS 3.1
9.8 critical
EPSS
2%p74
Published
()
Modified
Description

SpotCam Co., Ltd. SpotCam Sense’s hidden Telnet function has a vulnerability of OS command injection. An remote unauthenticated attacker can exploit this vulnerability to execute command injection attack to perform arbitrary system commands or disrupt service.

Vendors
myspotcam
Products
sense firmware
Weakness
CWE-78, CWE-77
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.