PatchSiren

CP Plus CVE debriefs

These pages are published after PatchSiren validates generated defensive summaries against stored public CVE and source evidence.

MEDIUM CP Plus CVE published 2026-05-25

CVE-2026-9274

CP Plus Wi-Fi Camera devices contain a medium-severity vulnerability (CVSS 4.0: 5.2) stemming from improper protection of sensitive information in runtime memory (CWE-312). An attacker with physical access can extract cryptographic private keys, Wi-Fi credentials, and configuration data by interfacing with the UART port and performing memory extraction from RAM. Successful exploitation enables unauthorize [truncated]