Impact
A CareCam CM2507 IP camera running firmware version HMT.CM2507 v251211.1507 exposes an interactive bootloader via a physical debug interface that can be accessed without authentication. The bootloader permits an attacker who can physically reach the debug port to interrupt normal boot and inspect or alter boot configuration, firmware data, and the software loaded by the device. This weakness enables unauthorized modification of the device’s firmware, potentially allowing attackers to install malicious code or create a persistent backdoor.
Affected Systems
This vulnerability affects CareCam’s HMT.CM2507 firmware version HMT.CM2507 v251211.1507, specifically the CM2507 IP camera model produced by CareCam.
Risk and Exploitability
The CVSS score of 2.4 classifies the flaw as low severity, and the EPSS score is under 1%, indicating a very low probability of exploitation. The flaw is not listed in the CISA KEV catalog. Exploitation requires physical access to the debug interface, so the risk depends on the strength of physical security controls protecting the device. If physical access is obtained, an attacker can reset the firmware or inject malicious payloads that persist across reboots.
OpenCVE Enrichment