CVE-2018-18602: Guardzilla 180 Indoor Firmware

Critical severity, CVSS 9.8. EPSS: 1.4% chance of exploitation in the next 30 days.

The Cloud API on Guardzilla smart cameras allows user enumeration, with resultant arbitrary camera access and monitoring.

Affected products

  • Guardzilla 180 Indoor Firmware: affected versions not specified
  • Guardzilla 180 Outdoor Firmware: affected versions not specified
  • Guardzilla 360 Indoor Firmware: affected versions not specified
  • Guardzilla 360 Outdoor Firmware: affected versions not specified
  • Guardzilla Indoor Hd Camera Firmware: affected versions not specified
  • Guardzilla Outdoor Hd Camera Firmware: affected versions not specified

Published 2018-12-31. Last modified 2026-06-17.