logo

Flaw Lets Hackers Own Samsung Smartcams With Bogus Firmware

ID: 6ab10db5-1cc4-513a-9f40-fd7f1814ca5b

STIX ID: report--6ab10db5-1cc4-513a-9f40-fd7f1814ca5b

Feed Name: Security Ledger

Threat Score
70/100

Date Published: 2017-01-17

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

A command-injection vulnerability in Samsung Smartcam's iWatch firmware update process allows attackers who can connect to the device to supply a crafted filename that results in remote root command execution; researchers demonstrated a proof-of-concept Telnet root shell and recommend patching the update script to prevent execution of malicious filenames.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.