Beveiligingsadvies

CVE-2025-25680

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2025-03-11 00:00:00
Laatst bijgewerkt 2025-03-21 20:44:34
Toegewezen door mitre
CVSS-score 7.7
Status PUBLISHED

Beschrijving

LSC Smart Connect LSC Indoor PTZ Camera 7.6.32 is contains a RCE vulnerability in the tuya_ipc_direct_connect function of the anyka_ipc process. The vulnerability allows arbitrary code execution through the Wi-Fi configuration process when a specially crafted QR code is presented to the camera.