CVE-2018-20342: Floureon SP012

Medium severity, CVSS 6.8. EPSS: 0.6% chance of exploitation in the next 30 days.

The Floureon IP Camera SP012 provides a root terminal on a UART serial interface without proper access control. This allows attackers with physical access to execute arbitrary commands with root privileges.

Affected products

  • Floureon SP012: affected versions not specified

Published 2018-12-21. Last modified 2026-06-17.