CVE-2019-3423: Ztehome c520v21 Firmware

Medium severity, CVSS 5.3. EPSS: 1.3% chance of exploitation in the next 30 days.

permission and access control vulnerability, which exists in V2.1.14 and below versions of C520V21 smart camera devices. An attacker can construct a URL for directory traversal and access to other unauthorized files or resources.

Affected products

  • Ztehome c520v21 Firmware: up to and including 2.1.14

Published 2019-11-18. Last modified 2026-06-17.