CVE Feed

    Dashboard / CVE / CVE-2023-34552

    CVE-2023-34552

    In certain EZVIZ products, two stack based buffer overflows in mulicast_parse_sadp_packet and mulicast_get_pack_type functions of the SADP multicast protocol can allow an unauthenticated attacker present on the same local network as the camera to achieve remote code execution. This affects CS-C6N-B0-1G2WF Firmware versions before V5.3.0 build 230215 and CS-C6N-R101-1G2WF Firmware versions before V5.3.0 build 230215 and CS-CV310-A0-1B2WFR Firmware versions before V5.3.0 build 230221 and CS-CV310-A0-1C2WFR-C Firmware versions before V5.3.2 build 230221 and CS-C6N-A0-1C2WFR-MUL Firmware versions before V5.3.2 build 230218 and CS-CV310-A0-3C2WFRL-1080p Firmware versions before V5.2.7 build 230302 and CS-CV310-A0-1C2WFR Wifi IP66 2.8mm 1080p Firmware versions before V5.3.2 build 230214 and CS-CV248-A0-32WMFR Firmware versions before V5.2.3 build 230217 and EZVIZ LC1C Firmware versions before V5.3.4 build 230214.

    Published:Aug 1, 2023
    Last Modified:Feb 12, 2025
    EPS:Aug 1, 2023
    EPSS Score:0.0067
    CVSS Score:4

    Affected Products

    Vendor
    Ezviz
    Product
    Cs-c6n-a0-1c2wfr-mul
    Vendor
    Ezviz
    Product
    Cs-c6n-a0-1c2wfr-mul Firmware
    Vendor
    Ezviz
    Product
    Cs-c6n-b0-1g2wf
    Vendor
    Ezviz
    Product
    Cs-c6n-b0-1g2wf Firmware
    Vendor
    Ezviz
    Product
    Cs-c6n-r101-1g2wf
    Vendor
    Ezviz
    Product
    Cs-c6n-r101-1g2wf Firmware
    Vendor
    Ezviz
    Product
    Cs-cv248-a0-32wmfr
    Vendor
    Ezviz
    Product
    Cs-cv248-a0-32wmfr Firmware
    Vendor
    Ezviz
    Product
    Cs-cv310-a0-1b2wfr
    Vendor
    Ezviz
    Product
    Cs-cv310-a0-1b2wfr Firmware
    Vendor
    Ezviz
    Product
    Cs-cv310-a0-1c2wfr
    Vendor
    Ezviz
    Product
    Cs-cv310-a0-1c2wfr-c
    Vendor
    Ezviz
    Product
    Cs-cv310-a0-1c2wfr-c Firmware
    Vendor
    Ezviz
    Product
    Cs-cv310-a0-1c2wfr Firmware
    Vendor
    Ezviz
    Product
    Cs-cv310-a0-3c2wfrl-1080p
    Vendor
    Ezviz
    Product
    Cs-cv310-a0-3c2wfrl-1080p Firmware
    Vendor
    Ezviz
    Product
    Cv310-a0-1b2wfr Firmware
    Vendor
    Ezviz
    Product
    Lc1c
    Vendor
    Ezviz
    Product
    Lc1c Firmware

    Exploits

    No exploit reference

    Common Attack Pattern Enumeration and Classification (CAPEC)

    No CAPEC recorded yet

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High