CVE-2017-2871 describes a critical vulnerability in the Foscam C1 Indoor HD Camera (firmware 2.52.2.43) where insufficient security checks during the recovery procedure allow for full device compromise. An attacker on the same subnetwork or with remote administrator access can exploit this by uploading a malicious firmware image, leading to complete loss of confidentiality, integrity, and availability. Rated with a CVSS score of 8.8 (HIGH), this vulnerability is easily exploitable with low attack complexity and no user interaction required. While no public exploits or active exploitation have been observed, and community discussion is minimal, the potential impact remains severe.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
2.52.2.43CPE matchmatch criteria | cpe:2.3:o:foscam:c1_firmware:2.52.2.43:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.