CVE-2022-38970

ieGeek IG20 hipcam RealServer V1.0 is vulnerable to Incorrect Access Control. The algorithm used to generate device IDs (UIDs) for devices that utilize Shenzhen Yunni Technology iLnkP2P suffers from a predictability flaw that allows remote attackers to establish direct connections to arbitrary devices.
Configurations

Configuration 1

cpe:2.3:a:hipcam:realserver:1.0:*:*:*:*:*:*:*

Information

Published : 2022-09-26 11:15

Updated : 2022-09-29 03:18


NVD link : CVE-2022-38970

Mitre link : CVE-2022-38970

Products Affected
No products.
CWE