Vulnerabilities > CVE-2019-12266 - Out-of-bounds Write vulnerability in Wyze products

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
wyze
CWE-787
critical

Summary

Stack-based Buffer Overflow vulnerability in Wyze Cam Pan v2, Cam v2, Cam v3 allows an attacker to run arbitrary code on the affected device. This issue affects: Wyze Cam Pan v2 versions prior to 4.49.1.47. Wyze Cam v2 versions prior to 4.9.8.1002. Wyze Cam v3 versions prior to 4.36.8.32.

Vulnerable Configurations

Part Description Count
OS
Wyze
3
Hardware
Wyze
3

Common Weakness Enumeration (CWE)