CVE-2018-20342
The Floureon IP Camera SP012 provides a root terminal on a UART serial interface without proper access control. This allows attackers with physical access to execute arbitrary commands with root privileges.
MISC: http://neolex-security.fr/article/obtenir-un-shell-root-par-les-ports-uart-sur-une-camera-ip-floureon/
MISC: https://neolex-security.fr/blog/8/
CVE: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-20342
published: 21. 12. 2018