Vulnerabilities (CVE)

Filtered by vendor Yitechnology Subscribe
Filtered by product Yi Home Camera
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-3890 1 Yitechnology 2 Yi Home Camera, Yi Home Camera Firmware 2019-10-03 4.6 MEDIUM 6.8 MEDIUM
An exploitable code execution vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D. A specially crafted file can cause a logic flaw and command injection, resulting in code execution. An attacker can insert an SD card to trigger this vulnerability.
CVE-2018-3891 1 Yitechnology 2 Yi Home Camera, Yi Home Camera Firmware 2018-12-11 2.1 LOW 4.6 MEDIUM
An exploitable firmware downgrade vulnerability exists in the firmware update functionality of Yi Home Camera 27US 1.8.7.0D. A specially crafted file can cause a logic flaw, resulting in a firmware downgrade. An attacker can insert an SD card to trigger this vulnerability.
CVE-2018-3920 1 Yitechnology 2 Yi Home Camera, Yi Home Camera Firmware 2018-12-11 4.6 MEDIUM 6.8 MEDIUM
An exploitable code execution vulnerability exists in the firmware update functionality of the Yi Home Camera 27US 1.8.7.0D. A specially crafted 7-Zip file can cause a CRC collision, resulting in a firmware update and code execution. An attacker can insert an SDcard to trigger this vulnerability.