ZeroHour

CVE-2024-37066

PoC
CVSS 3.1
8.8 high
EPSS
2%p78
Published
()
Modified
Description

A command injection vulnerability exists in Wyze V4 Pro firmware versions before 4.50.4.9222, which allows attackers to execute arbitrary commands over Bluetooth as root during the camera setup process.

Vendors
wyze
Products
cam v4 firmware
Weakness
CWE-78
Vector
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.