CVE-2020-25783
CRITICALAccfly 720p Firmware < 4.15.77 - Out-of-Bounds Write
Title source: ruleDescription
An issue was discovered on Accfly Wireless Security IR Camera System 720P with software versions v3.10.73 through v4.15.77. There is an unauthenticated heap-based buffer overflow in the function CNetClientTalk::OprMsg during incoming message handling.
References (1)
Core 1
Core References
Exploit, Technical Description, Third Party Advisory x_refsource_misc
https://github.com/tezeb/accfly/blob/master/Readme.md
Scores
CVSS v3
9.8
EPSS
0.0205
EPSS Percentile
84.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-787
Status
published
Products (1)
accfly/720p_firmware
3.10.73 - 4.15.77
Published
Jan 28, 2021
Tracked Since
Feb 18, 2026