Security Advisory

CVE-2025-25680

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-03-11 00:00:00
Last updated 2025-03-21 20:44:34
Assigner mitre
State PUBLISHED

Description

LSC Smart Connect LSC Indoor PTZ Camera 7.6.32 is contains a RCE vulnerability in the tuya_ipc_direct_connect function of the anyka_ipc process. The vulnerability allows arbitrary code execution through the Wi-Fi configuration process when a specially crafted QR code is presented to the camera.