Junming Chen
8 exploits
Active since Dec 2025
Aqara Hub M2, M3, and Camera Hub G3 Firmware - Improper Certificate Validation
CVSS 7.4
Aqara Hub M2, M3, and Camera Hub G3 - Improper Certificate Validation in CoAP Gateway Communications
CVSS 7.4
Aqara Hub M2/M3/Camera Hub G3 - OS Command Injection via Malicious Domain Name
CVSS 7.3
Aqara Camera Hub G3 4.1.9_0027 - OS Command Injection via Malicious QR Code
CVSS 6.6
Aqara Hub M2/M3/Camera Hub G3 - Unauthenticated Remote Code Execution via Undocumented Remote Access Mechanism
CVSS 9.8
Aqara Hub <4.1.9_0027-4.3.6_0025 - RCE
CVSS 8.1
Aqara Hub M2 4.3.6_0027, Hub M3 4.3.6_0025, and Camera Hub G3 4.1.9_0027 - Denial of Service via JSON Processing
CVSS 6.5
Aqara Hub <4.1.9_0027-4.3.6_0025 - Info Disclosure
CVSS 7.5