CVE-2024-23727
EUVD-2024-2118628.03.2024, 21:16
The YI Smart Kami Vision com.kamivision.yismart application through 1.0.0_20231219 for Android allows a remote attacker to execute arbitrary JavaScript code via an implicit intent to the com.ants360.yicamera.activity.WebViewActivity component.
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
| Vendor | Product | Version | Source |
|---|---|---|---|
| kamivision | yi_iot | 𝑥 ≤ 1.0.0_20231219 | ADP |