CVE-2022-38970
26.09.2022, 11:15
ieGeek IG20 hipcam RealServer V1.0 is vulnerable to Incorrect Access Control. The algorithm used to generate device IDs (UIDs) for devices that utilize Shenzhen Yunni Technology iLnkP2P suffers from a predictability flaw that allows remote attackers to establish direct connections to arbitrary devices.Enginsight
| Vendor | Product | Version |
|---|---|---|
| iegeek | ig20_firmware | - |
| hipcam | realserver | 1.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration