A vulnerability was found in Alaga Home Security WiFi Camera 3K (model S-CW2503C-H) with hardware version V03 and firmware version 1.4.2, which allows physical attackers to execute commands as root via script file with a specific name on a SD card.
References
| Link | Resource |
|---|---|
| https://www.alagaai.com/ | Product |
| https://www.mgm-sp.com/privilege-escalation-vulnerability-in-alaga-home-security-wifi-camera | Broken Link |
Configurations
Configuration 1 (hide)
| AND |
|
History
No history.
Information
Published : 2025-11-13 20:15
Updated : 2026-01-09 15:37
NVD link : CVE-2025-55810
Mitre link : CVE-2025-55810
CVE.ORG link : CVE-2025-55810
JSON object : View
Products Affected
alagaai
- s-cw2503c-h_firmware
- s-cw2503c-h
CWE
CWE-434
Unrestricted Upload of File with Dangerous Type
