CVE-2024-34896

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Feb 3, 2025
Updated: Feb 4, 2025

Summary

CVE-2024-34896 is a vulnerability affecting the Nedis SmartLife Video Doorbell (WIFICDP10GY) and the Nedis SmartLife IOS v1.4.0. The issue allows users who have previously connected to the doorbell through peer-to-peer (P2P) but have since been disconnected to still access the live video feed. This unintended persistence of access could potentially allow unauthorized individuals to view video content from the affected device. The vulnerability may pose a significant risk to privacy and security, especially in homes or businesses where access control is important. Users are advised to update their software to the latest version to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share