Vulnerability Description
An unauthenticated attacker can perform an out of bounds heap read in the IQ Service (TCP port 9876). This vulnerability has been resolved in firmware version 2.800.0000000.8.R.20241111.
CVSS Score
MEDIUM
Related Weaknesses (CWE)
References
- https://github.com/sfewer-r7/LorexExploit
- https://www.rapid7.com/blog/post/2024/12/03/lorex-2k-indoor-wi-fi-security-camer
FAQ
What is CVE-2024-52545?
CVE-2024-52545 is a vulnerability with a CVSS score of 6.5 (MEDIUM). An unauthenticated attacker can perform an out of bounds heap read in the IQ Service (TCP port 9876). This vulnerability has been resolved in firmware version 2.800.0000000.8.R.20241111.
How severe is CVE-2024-52545?
CVE-2024-52545 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2024-52545?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.