CVE-2024-52548: Lorex 2k Indoor Wi-Fi Security Camera

Medium severity, CVSS 6.7. EPSS: 0.2% chance of exploitation in the next 30 days.

An attacker who can execute arbitrary Operating Systems commands, can bypass code signing enforcements in the kernel, and execute arbitrary native code. This vulnerability has been resolved in firmware version 2.800.0000000.8.R.20241111.

Affected products

  • Lorex 2k Indoor Wi-Fi Security Camera: before 2.800.0000000.8.R.20241111 (fixed in 2.800.0000000.8.R.20241111)
  • Lorextechnology w461asc-E Firmware: before 2.800.0000000.8.r.20241111 (fixed in 2.800.0000000.8.r.20241111)

Published 2024-12-03. Last modified 2026-06-17.