Reolink Smart 2K+ Wi-Fi Video Doorbell Command Injection Vulnerability

Vulnerability

A command injection vulnerability has been identified in the Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime, specifically in firmware version 3.0.0.4662_2503122283. The vulnerability arises in the setddns_pip_system() function, where improper input validation allows attackers to inject and execute arbitrary commands on the system.

Impact

Exploitation of this vulnerability allows for OS command injection, where an attacker can execute arbitrary commands with the same privileges as the application. This could lead to unauthorized access to files, modification of data, or disruption of the device's normal operation.

Reproduction

To reproduce this vulnerability, send a request to the setddns_pip_system() function with crafted input that includes command separators, such as semicolons, followed by additional commands. The injected commands will be executed on the device, demonstrating the command injection flaw.

Added: Aug 22, 2025, 5:32 PM
Updated: Aug 22, 2025, 6:35 PM

Vulnerability Rating

Custom Algorithm
spread
0.0
impact
7.5
exploitability
8.7
remediation
0.0
relevance
0.4
threat
6.4
urgency
2.9
incentive
5.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.