Arbitrary Code Execution Vulnerability in CP PLUS EZ-P21 IP Camera
41Vexday Risk Score
Sem sinal de exploração. Ela tem prova de conceito pública.
ssvc Attendcvss 7epss 0.2%
da publicação à arma1 dias
Publicada no NVD27 de jul.
1ª PoC+1d
probabilidade de exploração
0.2%top 95% das CVEs
exploração observada
nãonenhuma fonte reporta
2 exploit(s) público(s)
This vulnerability exists in CP PLUS EZ-P21 IP Camera due to an insecure debug feature enabled in the firmware.
An attacker with physical access could exploit this vulnerability by placing arbitrary code on removable media and triggering their execution through the debug mechanism.
Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code with elevated privileges on the targeted device.
CVSS:4.0/AV:P/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Produtos afetados
CP-Plus · EZ-P21 IP CameraPoCs públicas encontradas — 2
githubgithub.com/ivmks74/IIITA-IoT-Security-Research★ 0githubgithub.com/CyberVinner/CP-PLUS-EZ-P21-CVE-2026-65893-65894★ 0⚠ Recursos públicos, para você avaliar a exposição de sistemas que controla ou está autorizado a testar. Teste apenas com autorização.