Back

MEDIUM

Information Exposure Vulnerability in CP-Plus Wi-Fi Camera

Published May 25, 2026

Description

This vulnerability exists in CP Plus Wi-Fi Camera due to improper protection of sensitive information in runtime memory. An attacker with physical access could exploit this vulnerability by accessing the UART interface and performing memory extraction to obtain sensitive information, including cryptographic private keys, Wi-Fi credentials and configuration data stored in RAM of the targeted device.

Successful exploitation of this vulnerability could allow unauthorized access to encrypted communications and connected wireless network of the targeted device.

Affected products

Remediation

Vendor solution

Upgrade CP Plus Wi-Fi Camera to the latest firmware version v02.21.041 through OTA using the Ezykam+ mobile application.https://cpplusworld.com/products/ezyhome/ezykam

Weaknesses (1)

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner CERT-In
Published May 25, 2026
Updated May 26, 2026
Reserved May 22, 2026

CISA Vulnrichment

Updated May 26, 2026

NVD

Status Deferred
Modified Jul 23, 2026

Red Hat

No data

ENISA EUVD

Assigner CERT-In
Published May 25, 2026
Updated May 26, 2026

GitHub

No data