Opticam's vulnerability footprint centers on its i5 camera product line and associated application and system firmware, a narrowly scoped but strategically positioned portfolio in networked imaging infrastructure. Vulnerabilities affecting the vendor skew strongly toward critical-severity outcomes and recur through a consistent set of embedded-system weakness classes: hard-coded credentials, OS command injection, improper permission assignment, and sensitive information exposure. These flaws are characteristic of the access-control and input-validation demands placed on internet-connected imaging appliances that often operate with elevated privileges in security-sensitive environments. Defenders should treat Opticam's advisories as high-priority for deployed i5 systems and prioritize firmware updates accordingly; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Opticam over time
Signals from CVEs in this vendor scope (20 CVEs).
20 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-19081CRITICAL An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF devicemgmt SetDNS method allows remote attackers t | Nov 7, 2018 | 9.8 | 33 | NO | NO |
CVE-2018-19082CRITICAL An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF devicemgmt SetDNS method allows remote attackers t | Nov 7, 2018 | 9.8 | 30 | NO | NO |
CVE-2018-19078CRITICAL An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The response to an ONVIF media GetStreamUri request contains | Nov 7, 2018 | 9.8 | 30 | NO | NO |
CVE-2018-19067CRITICAL An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application | Nov 7, 2018 | 9.8 | 30 | NO | NO |
CVE-2018-19064CRITICAL An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application | Nov 7, 2018 | 9.8 | 30 | NO | NO |
CVE-2018-19076CRITICAL An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application | Nov 7, 2018 | 9.8 | 29 | NO | NO |
CVE-2018-19069CRITICAL An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application | Nov 7, 2018 | 9.8 | 29 | NO | NO |
CVE-2018-19063CRITICAL An issue was discovered on Foscam C2 devices with System Firmware 1.11.1.8 and Application Firmware 2.72.1.32, and Opticam i5 devices with System Firmware 1.5.2.11 and Application | Nov 7, 2018 | 9.8 | 29 | NO | NO |
CVE-2018-19079HIGH An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The ONVIF devicemgmt SystemReboot method allows unauthentica | Nov 7, 2018 | 7.5 | 24 | NO | NO |
CVE-2018-19077HIGH An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. RtspServer allows remote attackers to cause a denial of serv | Nov 7, 2018 | 7.5 | 24 | NO | NO |
Signals from CVEs in this vendor scope (20 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Opticam.
Media articles that mention a CVE ID that affects a product developed by Opticam — matched by CVE ID, not by vendor name.