CVE-2025-63674

An issue in Blurams Lumi Security Camera (A31C) v23.1227.472.2926 allows local physical attackers to execute arbitrary code via overriding the bootloader on the SD card.
References
Link Resource
http://a31c.com Broken Link
http://blurams.com Product
https://vindivlabs.com/research/lumi_part_2/ Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:blurams:a31c_firmware:23.1227.472.2926:*:*:*:*:*:*:*
cpe:2.3:h:blurams:a31c:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2025-11-24 22:15

Updated : 2025-12-30 17:24


NVD link : CVE-2025-63674

Mitre link : CVE-2025-63674

CVE.ORG link : CVE-2025-63674


JSON object : View

Products Affected

blurams

  • a31c
  • a31c_firmware
CWE
CWE-77

Improper Neutralization of Special Elements used in a Command ('Command Injection')