Furbo dog camera has insufficient filtering for special parameter of device log management function. An unauthenticated remote attacker in the Bluetooth network with normal user privileges can exploit this vulnerability to perform command injection attack to execute arbitrary system commands or disrupt service.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: twcert

Published: 2023-06-02T00:00:00

Updated: 2024-08-02T13:43:23.897Z

Reserved: 2023-03-21T00:00:00

Link: CVE-2023-28704

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2023-06-02T11:15:10.650

Modified: 2023-06-09T18:22:24.773

Link: CVE-2023-28704

cve-icon Redhat

No data.