Wificam manufactures wireless IP cameras with peer-to-peer connectivity, a consumer-class device category where the vulnerability footprint centers on credential and authentication handling in both product firmware and remote-access mechanisms. The observed weakness classes—insufficiently protected credentials, improper authentication, missing encryption of sensitive data, and hard-coded credentials—reflect the endemic challenge of securing embedded networked devices where credentials are often baked into firmware or transmitted without protective measures. Current exploitation activity and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wificam over time
Signals from CVEs in this vendor scope (5 CVEs).
5 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-8225CRITICAL On Wireless IP Camera (P2P) WIFICAM devices, access to .ini files (containing credentials) is not correctly checked. An attacker can bypass authentication by providing an empty log | Apr 25, 2017 | 9.8 | 51 | NO | YES |
CVE-2017-8224CRITICAL Wireless IP Camera (P2P) WIFICAM devices have a backdoor root account that can be accessed with TELNET. | Apr 25, 2017 | 9.8 | 46 | NO | YES |
CVE-2017-8223HIGH On Wireless IP Camera (P2P) WIFICAM devices, an attacker can use the RTSP server on port 10554/tcp to watch the streaming without authentication via tcp/av0_1 or tcp/av0_0. | Apr 25, 2017 | 7.5 | 36 | NO | YES |
CVE-2017-8222HIGH Wireless IP Camera (P2P) WIFICAM devices have an "Apple Production IOS Push Services" private RSA key and certificate stored in /system/www/pem/ck.pem inside the firmware, which al | Apr 25, 2017 | 7.5 | 36 | NO | YES |
CVE-2017-8221HIGH Wireless IP Camera (P2P) WIFICAM devices rely on a cleartext UDP tunnel protocol (aka the Cloud feature) for communication between an Android application and a camera device, which | Apr 25, 2017 | 7.5 | 35 | NO | YES |
Signals from CVEs in this vendor scope (5 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wificam.
Media articles that mention a CVE ID that affects a product developed by Wificam — matched by CVE ID, not by vendor name.