Aver PTC310UV2 Firmware Remote Code Execution Vulnerability
Vulnerability
A remote code execution vulnerability has been identified in the AVer PTC310UV2 camera firmware version 0.1.0000.59. The issue arises in the web interface, specifically within the SendAction function, which allows attackers to execute arbitrary code on the device.
Impact
Exploitation of this vulnerability allows for arbitrary code execution on the affected device.
Reproduction
The vulnerability can be reproduced by accessing the camera's web interface and invoking the SendAction function. This action can be performed remotely, taking advantage of the exposed endpoint that allows code execution.
Added: Jul 30, 2025, 5:18 PM
Updated: Jul 30, 2025, 7:35 PM
Vulnerability Rating
Custom Algorithm
spread
0.0impact
7.5exploitability
8.7remediation
0.0relevance
0.3threat
6.4urgency
2.9incentive
5.0Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.
