Foscam manufactures a well-represented line of consumer and small-business IP cameras and related firmware, from the C1 and C2 series, that are widely deployed in surveillance networks and remote-monitoring installations. Vulnerabilities affecting the vendor skew toward serious outcomes, with a meaningful share reaching critical severity; the exposure recurs through weakness classes including OS command injection, classic buffer overflows, hard-coded credentials, and improper authentication that are endemic to embedded camera firmware with minimal input validation and legacy authentication schemes. The firmware-centric nature of Foscam's product line means that remediation typically lags disclosure, leaving devices in the field vulnerable for extended periods and creating persistent targets for botnet recruitment and lateral-network pivoting. Defenders should inventory deployed Foscam cameras, prioritize network segmentation for camera management interfaces, and treat firmware updates as security-critical rather than optional. Current exploitation activity, severity distribution, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Foscam over time
Signals from CVEs in this vendor scope (65 CVEs).
65 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2014-1849HIGH Foscam IP camera 11.37.2.49 and other versions, when using the Foscam DynDNS option, generates credentials based on predictable camera subdomain names, which allows remote attacker | May 14, 2014 | 10.0 | 47 | NO | YES |
CVE-2017-2805CRITICAL An exploitable stack-based buffer overflow vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera. A specially crafted http request can cause a | Jun 21, 2017 | 9.8 | 44 | NO | NO |
CVE-2013-2574HIGH An Access vulnerability exists in FOSCAM IP Camera FI8620 due to insufficient access restrictions in the /tmpfs/ and /log/ directories, which could let a malicious user obtain sens | Jan 29, 2020 | 7.5 | 43 | NO | YES |
CVE-2018-19081CRITICAL An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF devicemgmt SetDNS method allows remote attackers t | Nov 7, 2018 | 9.8 | 33 | NO | NO |
CVE-2013-2560HIGH Directory traversal vulnerability in the web interface on Foscam devices with firmware before 11.37.2.49 allows remote attackers to read arbitrary files via a .. (dot dot) in the U | Mar 15, 2013 | 7.8 | 33 | NO | YES |
CVE-2021-43517CRITICAL FOSCAM Camera FI9805E with firmware V4.02.R12.00018510.10012.143900.00000 contains a backdoor that opens Telnet port when special command is sent on port 9530. | Apr 8, 2022 | 9.8 | 30 | NO | NO |
CVE-2018-19082CRITICAL An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF devicemgmt SetDNS method allows remote attackers t | Nov 7, 2018 | 9.8 | 30 | NO | NO |
CVE-2018-19078CRITICAL An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The response to an ONVIF media GetStreamUri request contains | Nov 7, 2018 | 9.8 | 30 | NO | NO |
CVE-2018-19067CRITICAL An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application | Nov 7, 2018 | 9.8 | 30 | NO | NO |
CVE-2018-19064CRITICAL An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application | Nov 7, 2018 | 9.8 | 30 | NO | NO |
Signals from CVEs in this vendor scope (65 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Foscam.
Media articles that mention a CVE ID that affects a product developed by Foscam — matched by CVE ID, not by vendor name.