Vulnerability Description
Yeelight Smart AI Speaker 3.3.10_0074 devices have improper access control over the UART interface, allowing physical attackers to obtain a root shell. The attacker can then exfiltrate the audio data, read cleartext Wi-Fi credentials in a log file, or access other sensitive device and user information.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Yeelight | Smart Ai Speaker Firmware | 3.3.10_0074 |
| Yeelight | Smart Ai Speaker | - |
Related Weaknesses (CWE)
References
- https://forum.yeelight.com/Vendor Advisory
- https://payatu.com/yeelight-smart-ai-speaker-responsible-disclosure/ExploitThird Party Advisory
- https://forum.yeelight.com/Vendor Advisory
- https://payatu.com/yeelight-smart-ai-speaker-responsible-disclosure/ExploitThird Party Advisory
FAQ
What is CVE-2018-20007?
CVE-2018-20007 is a vulnerability with a CVSS score of 6.8 (MEDIUM). Yeelight Smart AI Speaker 3.3.10_0074 devices have improper access control over the UART interface, allowing physical attackers to obtain a root shell. The attacker can then exfiltrate the audio data,...
How severe is CVE-2018-20007?
CVE-2018-20007 has been rated MEDIUM with a CVSS base score of 6.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2018-20007?
Check the references section above for vendor advisories and patch information. Affected products include: Yeelight Smart Ai Speaker Firmware, Yeelight Smart Ai Speaker.