The firmware of the AZIOT 2MP Full HD Smart Wi-Fi CCTV Home Security Camera (version V1.00.02) contains an Incorrect Access Control vulnerability that allows local attackers to gain root shell access. Once accessed, the device exposes critical data including Wi-Fi credentials and ONVIF service credentials stored in plaintext, enabling further compromise of the network and connected systems.
References
Configurations
No configuration.
History
31 Jul 2025, 18:42
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
30 Jul 2025, 20:15
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-312 CWE-284 |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.8 |
30 Jul 2025, 19:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2025-07-30 19:15
Updated : 2025-07-31 18:42
NVD link : CVE-2025-50777
Mitre link : CVE-2025-50777
CVE.ORG link : CVE-2025-50777
JSON object : View
Products Affected
No product.