Successful exploitation of this vulnerability could allow unauthorized access to encrypted communications and connected wireless network of the targeted device.
Project Subscriptions
| Vendors | Products |
|---|---|
|
Cp Plus
Subscribe
|
Cp-e21q
Subscribe
Cp-e24q
Subscribe
Cp-e25q
Subscribe
Cp-e28q
Subscribe
Cp-e31q
Subscribe
Cp-e34q
Subscribe
Cp-e35q
Subscribe
Cp-e38q
Subscribe
Cp-e41q
Subscribe
Cp-e44q
Subscribe
Cp-e45q
Subscribe
Cp-e48q
Subscribe
Cp-t31q
Subscribe
Cp-v41q
Subscribe
Cp-v48q
Subscribe
Cp-z43q
Subscribe
Cp-z45q
Subscribe
Wi-fi Camera Cp-e38q Cp-e48q Cp-e25q Cp-e35q Cp-e45q Cp-e28q Cp-e21q Cp-e31q Cp-e41q Cp-e24q Cp-z43q Cp-e34q Cp-e44q Cp-t31q Cp-v48q Cp-v41q Cp-z45q
Subscribe
|
No advisories yet.
Solution
Upgrade CP Plus Wi-Fi Camera to the latest firmware version v02.21.041 through OTA using the Ezykam+ mobile application.https://cpplusworld.com/products/ezyhome/ezykam
Workaround
No workaround given by the vendor.
Wed, 27 May 2026 10:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Cp Plus cp-e21q
Cp Plus cp-e24q Cp Plus cp-e25q Cp Plus cp-e28q Cp Plus cp-e31q Cp Plus cp-e34q Cp Plus cp-e35q Cp Plus cp-e38q Cp Plus cp-e41q Cp Plus cp-e44q Cp Plus cp-e45q Cp Plus cp-e48q Cp Plus cp-t31q Cp Plus cp-v41q Cp Plus cp-v48q Cp Plus cp-z43q Cp Plus cp-z45q |
|
| Vendors & Products |
Cp Plus cp-e21q
Cp Plus cp-e24q Cp Plus cp-e25q Cp Plus cp-e28q Cp Plus cp-e31q Cp Plus cp-e34q Cp Plus cp-e35q Cp Plus cp-e38q Cp Plus cp-e41q Cp Plus cp-e44q Cp Plus cp-e45q Cp Plus cp-e48q Cp Plus cp-t31q Cp Plus cp-v41q Cp Plus cp-v48q Cp Plus cp-z43q Cp Plus cp-z45q |
Tue, 26 May 2026 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 25 May 2026 09:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | This vulnerability exists in CP Plus Wi-Fi Camera due to improper protection of sensitive information in runtime memory. An attacker with physical access could exploit this vulnerability by accessing the UART interface and performing memory extraction to obtain sensitive information, including cryptographic private keys, Wi-Fi credentials and configuration data stored in RAM of the targeted device. Successful exploitation of this vulnerability could allow unauthorized access to encrypted communications and connected wireless network of the targeted device. | |
| Title | Information Exposure Vulnerability in CP-Plus Wi-Fi Camera | |
| First Time appeared |
Cp Plus
Cp Plus wi-fi Camera Cp-e38q Cp-e48q Cp-e25q Cp-e35q Cp-e45q Cp-e28q Cp-e21q Cp-e31q Cp-e41q Cp-e24q Cp-z43q Cp-e34q Cp-e44q Cp-t31q Cp-v48q Cp-v41q Cp-z45q |
|
| Weaknesses | CWE-312 | |
| CPEs | cpe:2.3:a:cp_plus:wi-fi_camera_cp-e38q_cp-e48q_cp-e25q_cp-e35q_cp-e45q_cp-e28q_cp-e21q_cp-e31q_cp-e41q_cp-e24q_cp-z43q_cp-e34q_cp-e44q_cp-t31q_cp-v48q_cp-v41q_cp-z45q:v02.21.031_or_below:*:*:*:*:*:*:* | |
| Vendors & Products |
Cp Plus
Cp Plus wi-fi Camera Cp-e38q Cp-e48q Cp-e25q Cp-e35q Cp-e45q Cp-e28q Cp-e21q Cp-e31q Cp-e41q Cp-e24q Cp-z43q Cp-e34q Cp-e44q Cp-t31q Cp-v48q Cp-v41q Cp-z45q |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: CERT-In
Published:
Updated: 2026-05-26T14:42:56.110Z
Reserved: 2026-05-22T11:57:54.666Z
Link: CVE-2026-9274
Updated: 2026-05-26T14:42:51.572Z
Status : Deferred
Published: 2026-05-25T10:16:15.627
Modified: 2026-05-26T20:04:56.653
Link: CVE-2026-9274
No data.
OpenCVE Enrichment
Updated: 2026-05-27T10:06:02Z