Vulnerabilities > Ezviz > Medium

DATE CVE VULNERABILITY TITLE RISK
2023-11-28 CVE-2023-48121 Improper Authentication vulnerability in Ezviz products
An authentication bypass vulnerability in the Direct Connection Module in Ezviz CS-C6N-xxx prior to v5.3.x build 20230401, Ezviz CS-CV310-xxx prior to v5.3.x build 20230401, Ezviz CS-C6CN-xxx prior to v5.3.x build 20230401, Ezviz CS-C3N-xxx prior to v5.3.x build 20230401 allows remote attackers to obtain sensitive information by sending crafted messages to the affected devices.
network
low complexity
ezviz CWE-287
5.3
2022-09-15 CVE-2022-2472 Unspecified vulnerability in Ezviz Cs-C6N-A0-1C2Wfr Firmware 5.3.0
Improper Initialization vulnerability in the local server component of EZVIZ CS-C6N-A0-1C2WFR allows a local attacker to read the contents of the memory space containing the encrypted admin password.
local
low complexity
ezviz
5.5