CVE-2018-20342

The Floureon IP Camera SP012 provides a root terminal on a UART serial interface without proper access control. This allows attackers with physical access to execute arbitrary commands with root privileges.

MISC: http://neolex-security.fr/article/obtenir-un-shell-root-par-les-ports-uart-sur-une-camera-ip-floureon/
MISC: https://neolex-security.fr/blog/8/
CVE: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20342

12 years
256 countries
716k users
4780k calculations