Severity
9.8CRITICAL
EPSS
0.1%
top 77.86%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMay 10

Description

Shenzen Tenda Technology IP Camera CP3 V11.10.00.2211041355 does not defend against physical access to U-Boot via the UART: the Wi-Fi password is shown, and the hardcoded boot password can be inserted for console access.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 3.9 | Impact: 5.9

Affected Packages1 packages

NVDtenda/cp3_firmware11.10.00.2211041355

🔴Vulnerability Details

2
CVEList
CVE-2023-30354: Shenzen Tenda Technology IP Camera CP3 V112023-05-10
GHSA
GHSA-hrfc-4vch-693p: Shenzen Tenda Technology IP Camera CP3 V112023-05-10
CVE-2023-30354 (CRITICAL CVSS 9.8) | Shenzen Tenda Technology IP Camera | cvebase.io