CVE-2025-56438

An issue in the firmware update mechanism of Nous W3 Smart WiFi Camera v1.33.50.82 allows unauthenticated and physically proximate attackers to escalate privileges to root via supplying a crafted update.tar archive file stored on a FAT32-formatted SD card.
Configurations

No configuration.

History

24 Oct 2025, 16:15

Type Values Removed Values Added
CWE CWE-345
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.8

24 Oct 2025, 15:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-10-24 15:15

Updated : 2025-10-24 16:15


NVD link : CVE-2025-56438

Mitre link : CVE-2025-56438

CVE.ORG link : CVE-2025-56438


JSON object : View

Products Affected

No product.

CWE
CWE-345

Insufficient Verification of Data Authenticity