
CVE-2022-2472 – Improper Initialization vulnerability in local server authentication logic
https://notcve.org/view.php?id=CVE-2022-2472
15 Sep 2022 — Improper Initialization vulnerability in the local server component of EZVIZ CS-C6N-A0-1C2WFR allows a local attacker to read the contents of the memory space containing the encrypted admin password. This issue affects: EZVIZ CS-C6N-A0-1C2WFR versions prior to 5.3.0 build 220428. Una vulnerabilidad de inicialización inapropiada en el componente del servidor local de EZVIZ CS-C6N-A0-1C2WFR, permite a un atacante local leer el contenido del espacio de memoria que contiene la contraseña de administrador cifrad... • https://www.bitdefender.com/blog/labs/vulnerabilities-identified-in-ezviz-smart-cams • CWE-665: Improper Initialization •

CVE-2022-2471 – Stack-Based Buffer Overflow Vulnerability in the EZVIZ Motion Detection component
https://notcve.org/view.php?id=CVE-2022-2471
15 Sep 2022 — Stack-based Buffer Overflow vulnerability in the EZVIZ Motion Detection component as used in camera models CS-CV248, CS-C6N-A0-1C2WFR, CS-DB1C-A0-1E2W2FR, CS-C6N-B0-1G2WF, CS-C3W-A0-3H4WFRL allows a remote attacker to execute remote code on the device. This issue affects: EZVIZ CS-CV248 versions prior to 5.2.3 build 220725. EZVIZ CS-C6N-A0-1C2WFR versions prior to 5.3.0 build 220428. EZVIZ CS-DB1C-A0-1E2W2FR versions prior to 5.3.0 build 220802. EZVIZ CS-C6N-B0-1G2WF versions prior to 5.3.0 build 220712. • https://www.bitdefender.com/blog/labs/vulnerabilities-identified-in-ezviz-smart-cams • CWE-121: Stack-based Buffer Overflow •