Vulnerabilities > CVE-2018-4014 - Out-of-bounds Write vulnerability in Anker-In Roav Dashcam A1 Firmware Roava1Swv1.9
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
An exploitable code execution vulnerability exists in Wi-Fi Command 9999 of the Roav A1 Dashcam running version RoavA1SWV1.9. A specially crafted packet can cause a stack-based buffer overflow, resulting in code execution. An attacker can send a packet to trigger this vulnerability.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 1 | |
Hardware | 1 |
Common Weakness Enumeration (CWE)
Talos
id | TALOS-2018-0685 |
last seen | 2019-05-29 |
published | 2019-05-13 |
reporter | Talos Intelligence |
source | http://www.talosintelligence.com/vulnerability_reports/TALOS-2018-0685 |
title | Anker Roav A1 Dashcam WifiCmd 9999 Code Execution Vulnerability |