CVE-2023-47882: High severity yi smart kami vision vulnerability
The Kami Vision YI IoT com.yunyi.smartcamera application through 4.1.920231127 for Android allows a remote attacker to execute arbitrary JavaScript code via an implicit intent to the com.ants360.yicamera.activity.WebViewActivity component.
Affected Software
Event History
Frequently Asked Questions
What is the CVE-2023-47882 vulnerability severity?
CVE-2023-47882 has a high severity due to the potential for remote attackers to execute arbitrary JavaScript code.
How can I fix CVE-2023-47882?
To mitigate CVE-2023-47882, users should update the Kami Vision YI IoT application to a version higher than 4.1.9_20231127.
Who is affected by CVE-2023-47882?
CVE-2023-47882 affects users of the Kami Vision YI IoT application version 4.1.9_20231127 on Android devices.
What types of attacks are possible due to CVE-2023-47882?
Due to CVE-2023-47882, attackers could execute arbitrary JavaScript code, potentially compromising user data.
Is the CVE-2023-47882 vulnerability being actively exploited?
As of now, there are no confirmed reports of active exploitation for CVE-2023-47882, but it poses a significant risk.