Vulnerabilities > Keruigroup
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2018-10-22 | CVE-2018-13115 | Improper Input Validation vulnerability in Keruigroup Ypc99 Firmware Lack of an authentication mechanism in KERUI Wifi Endoscope Camera (YPC99) allows an attacker to watch or block the camera stream. | 6.5 |
2018-10-22 | CVE-2018-13114 | Missing Authentication for Critical Function vulnerability in Keruigroup Ypc99 Firmware Missing authentication and improper input validation in KERUI Wifi Endoscope Camera (YPC99) allow an attacker to execute arbitrary commands (with a length limit of 19 characters) via the "ssid" value, as demonstrated by ssid:;ping 192.168.1.2 in the body of a SETSSID command. | 9.8 |