CVE-2020-25783
CRITICALAccfly 720p_firmware 3.10.73-4.15.77 - Unauthenticated Heap-Based Buffer Overflow in CNetClientTalk::OprMsg
Title source: llmDescription
An issue was discovered on Accfly Wireless Security IR Camera System 720P with software versions v3.10.73 through v4.15.77. There is an unauthenticated heap-based buffer overflow in the function CNetClientTalk::OprMsg during incoming message handling.
References (1)
Core 1
Core References
Exploit, Technical Description, Third Party Advisory x_refsource_misc
https://github.com/tezeb/accfly/blob/master/Readme.md
Scores
CVSS v3
9.8
EPSS
0.0167
EPSS Percentile
73.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-787
Status
published
Products (1)
accfly/720p_firmware
3.10.73 - 4.15.77
Published
Jan 28, 2021
Tracked Since
Feb 18, 2026