BS Producten Petcam 33.1.0.0818 is vulnerable to Incorrect Access Control (CWE-284). An unauthenticated attacker in physical proximity can associate with the device's open wireless network. Once connected, the attacker gains access to the camera's private network interface and can retrieve sensitive information, including live video and audio streams, without providing credentials. The vulnerability has a [truncated]
A stack-based buffer overflow vulnerability exists in the P2P API service of BS Producten Petcam devices running firmware version 33.1.0.0818. The flaw allows unauthenticated attackers within network range to achieve remote code execution by sending a specially crafted HTTP request that overwrites the instruction pointer. The vulnerability carries a CVSS 3.1 score of 8.8 (High severity) with an attack vec [truncated]