Ibaby manufactures consumer baby monitors, with vulnerabilities clustered in its M3S and M6 product lines and firmware. The observed weakness classes center on exposure of sensitive information and use of hard-coded credentials, reflecting common challenges in IoT device authentication and data protection. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Ibaby over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2015-2887CRITICAL iBaby M3S has a password of admin for the backdoor admin account. | Apr 10, 2017 | 9.8 | 29 | NO | NO |
CVE-2015-2886HIGH iBaby M6 allows remote attackers to obtain sensitive information, related to the ibabycloud.com service. | Apr 10, 2017 | 7.5 | 19 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Ibaby.
Media articles that mention a CVE ID that affects a product developed by Ibaby — matched by CVE ID, not by vendor name.