CVE-2020-7848: Iptime c200 Firmware
High severity, CVSS 8.0. EPSS: 1.1% chance of exploitation in the next 30 days.
The EFM ipTIME C200 IP Camera is affected by a Command Injection vulnerability in /login.cgi?logout=1 script. To exploit this vulnerability, an attacker can send a GET request that executes arbitrary OS commands via cookie value.
Affected products
- Iptime c200 Firmware: version 1.0.12 only
Published 2021-02-17. Last modified 2026-06-17.