A command injection vulnerability exists in Wyze V4 Pro firmware versions before 4.50.4.9222, which allows attackers to execute arbitrary commands over Bluetooth as root during the camera setup process.
History

Thu, 22 Aug 2024 18:45:00 +0000

Type Values Removed Values Added
First Time appeared Wyze
Wyze cam V4
Wyze cam V4 Firmware
CPEs cpe:2.3:h:wyze:cam_v4:*:*:*:*:*:*:*:*
cpe:2.3:o:wyze:cam_v4_firmware:*:*:*:*:*:*:*:*
Vendors & Products Wyze
Wyze cam V4
Wyze cam V4 Firmware

cve-icon MITRE

Status: PUBLISHED

Assigner: HiddenLayer

Published: 2024-07-19T12:05:11.395Z

Updated: 2024-08-02T03:43:50.813Z

Reserved: 2024-05-31T14:19:09.799Z

Link: CVE-2024-37066

cve-icon Vulnrichment

Updated: 2024-08-02T03:43:50.813Z

cve-icon NVD

Status : Analyzed

Published: 2024-07-19T12:15:02.320

Modified: 2024-08-22T18:22:47.927

Link: CVE-2024-37066

cve-icon Redhat

No data.