CVE-2020-19642

MEDIUM

Insma Wifi Mini Spy 1080p HD Security... - Unrestricted File Upload

Title source: rule
STIX 2.1

Description

An issue was discovered in INSMA Wifi Mini Spy 1080P HD Security IP Camera 1.9.7 B. A local attacker can execute arbitrary code via editing the 'recdata.db' file to call a specially crafted GoAhead ASP-file on the SD card.

References (1)

Core 1
Core References
Exploit, Third Party Advisory x_refsource_misc
https://xn--sb-lka.org/cve/INSMA.txt

Scores

CVSS v3 6.2
EPSS 0.0007
EPSS Percentile 21.3%
Attack Vector PHYSICAL
CVSS:3.1/AV:P/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-434
Status published
Products (1)
insma/wifi_mini_spy_1080p_hd_security_ip_camera_firmware 1.9.7b
Published Mar 30, 2021
Tracked Since Feb 18, 2026