Junglewise Threat Intelligence

CVE-2026-36933: Boyleep Ease Life Camera arbitrary code execution via factory test feature

CVE-2026-36933 · Severity: info · CVSS 6.8 · Published 2026-06-15

Executive brief

Boyleep K11 and y108 security cameras (often sold under the 'Ease Life' brand) contain a vulnerability that allows an attacker with physical access to the device to take full control. By inserting a specially prepared microSD card, an attacker can bypass security measures and execute their own code on the camera. This could lead to unauthorized surveillance, theft of video data, or the device being used as a foothold to attack other devices on the local network.

Technical details

A vulnerability in the firmware (v.2.3.0.11291) of Boyleep K11 and y108 cameras (Ease Life brand) stems from an active factory test feature. The device's boot process checks for specific files on an inserted microSD card to initiate diagnostic or testing routines. An attacker with physical access can insert a microSD card containing forged files to trigger command execution with root privileges. This allows for complete system compromise, including the ability to exfiltrate data or modify system binaries. The issue was identified through firmware analysis of the SquashFS and JFFS2 filesystems extracted via SPI flash.

Affected products

  • Boyleep K11 2.3.0.11291
  • Boyleep y108 2.3.0.11291
  • Boyleep Ease Life Security Camera 2.3.0.11291

Timeline

  • 2026-06-15: disclosed: CVE published and technical write-up released

References