CyberRota Analysis
AI-GeneratedA heap-based buffer overflow vulnerability in the WS-Addressing Action transformation function of the Sofia IPC daemon in Xiongmai IP Camera XM530 firmware allows remote unauthenticated attackers to exploit crafted SOAP requests, leading to potential denial of service or arbitrary code execution. Organizations using affected firmware versions should prioritize patching to mitigate the risk of exploitation. This vulnerability poses a significant threat to the security and reliability of IP camera systems.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Note: these links are listed for security research and verification purposes only.
Original NVD Description
A heap-based buffer overflow vulnerability in the WS-Addressing Action transformation function in the Sofia IPC daemon in Xiongmai IP Camera XM530 firmware HMT.CM2005-v220608.1837 and earlier allows remote unauthenticated attackers to cause a denial of service or potentially execute arbitrary code via a crafted SOAP request containing a wsa5:Action string exceeding 128 bytes.