Executive brief
A security flaw in AZIOT home security cameras allows an individual with physical access to the device to take complete control of its operating system. By accessing the camera's internal hardware interface, an attacker can retrieve sensitive information such as Wi-Fi passwords and camera service credentials which are stored without encryption. This could lead to unauthorized access to the home network and the video feed itself.
Technical details
An incorrect access control vulnerability exists in the firmware of the AZIOT 2MP Full HD Smart Wi-Fi CCTV camera due to insecure bootloader and init script configurations. Attackers with local access can bypass authentication via the UART console interface to obtain a root shell. Once root access is achieved, the attacker can access the file system to retrieve sensitive data, including Wi-Fi SSIDs, passwords, and ONVIF service credentials, all of which are stored in plaintext (CWE-312). This enables full device compromise and potential lateral movement within the local network. No official patch has been confirmed; users are advised to disable ONVIF if not required.
Affected products
- AZIOT 2MP Full HD Smart Wi-Fi CCTV Home Security Camera V1.00.02
Timeline
- 2025-04-27: other: Vulnerability discovered
- 2025-04-28: other: Responsible disclosure attempt sent to vendor
- 2025-07-23: disclosed: Public disclosure on GitHub
- 2025-07-30: advisory: NVD publication date