Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Ezviz

First CVE: Sep 15, 2022Active for: 4 yearsTotal CVEs: 6

Ezviz manufactures a focused line of networked surveillance cameras and related firmware, a modestly represented but prominently deployed product category in the connected-device landscape. Vulnerabilities affecting the vendor skew toward serious outcomes, with an elevated share reaching critical severity, and recur across camera models through weakness classes including out-of-bounds writes, stack-based buffer overflows, improper authentication, and improper initialization—patterns characteristic of embedded firmware with constrained validation and memory-safety practices. Defenders should prioritize inventory and patching of affected camera deployments, particularly those exposed to untrusted networks; live severity and exploitation counts are shown alongside this summary.

FAUCET AI Generated
6
Total CVEs
More Total CVEs than 86% of tracked vendors
0.1
Avg CVEs / Product / Year
More Avg CVEs / Product / Year than 1% of tracked vendors
7.5
Avg CVSS Score
Higher Avg CVSS Score than 71% of tracked vendors
0.0%
In CISA KEV
Bottom 1%

Trends Over Time

The number and severity of CVEs published that impact products developed by Ezviz over time

Volume of CVEsAvg CVSS Base Score
First CVE
Sep 15, 2022
3 years ago
Most Recent CVE
Dec 4, 2023
964 days ago

Products(31 total)

Top CVEs

Signals from CVEs in this vendor scope (6 CVEs).

6 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2022-2471CRITICAL
Stack-based Buffer Overflow vulnerability in the EZVIZ Motion Detection component as used in camera models CS-CV248, CS-C6N-A0-1C2WFR, CS-DB1C-A0-1E2W2FR, CS-C6N-B0-1G2WF, CS-C3W-A
Sep 15, 20229.832NONO
CVE-2023-34552HIGH
In certain EZVIZ products, two stack based buffer overflows in mulicast_parse_sadp_packet and mulicast_get_pack_type functions of the SADP multicast protocol can allow an unauthent
Aug 1, 20238.826NONO
CVE-2023-41613HIGH
EzViz Studio v2.2.0 is vulnerable to DLL hijacking.
Dec 4, 20237.825NONO
CVE-2023-34551HIGH
In certain EZVIZ products, two stack buffer overflows in netClientSetWlanCfg function of the EZVIZ SDK command server can allow an authenticated attacker present on the same local
Aug 1, 20238.024NONO
CVE-2022-2472MEDIUM
Improper Initialization vulnerability in the local server component of EZVIZ CS-C6N-A0-1C2WFR allows a local attacker to read the contents of the memory space containing the encryp
Sep 15, 20225.521NONO
CVE-2023-48121MEDIUM
An authentication bypass vulnerability in the Direct Connection Module in Ezviz CS-C6N-xxx prior to v5.3.x build 20230401, Ezviz CS-CV310-xxx prior to v5.3.x build 20230401, Ezviz
Nov 28, 20235.320NONO
View all 6 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products6 CVEs
33%
50%
17%
Severity distribution among all CVEs352,427 CVEs
45%
40%
11%
MediumHighCritical
Attack Vector
Local2 (33.3%)
Network2 (33.3%)
Unknown0 (0.0%)
Physical0 (0.0%)
Adjacent Network2 (33.3%)
Attack Complexity
Low6 (100.0%)
High0 (0.0%)
Unknown0 (0.0%)
User Interaction
None5 (83.3%)
Unknown0 (0.0%)
Required1 (16.7%)
Privileges Required
Low2 (33.3%)
High0 (0.0%)
None4 (66.7%)
Unknown0 (0.0%)

Exploit Exposure

Signals from CVEs in this vendor scope (6 CVEs).

CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
0 CVEs
0.0% of CVEs· Bottom 1%

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Ezviz.

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Ezviz — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Ezviz's Products

View all 2 CNAs →

Top CWEs