IM
IronMonkey Threat Research
‹ Back to ICS Advisories

CareCam Pro IP Cameras

MEDIUM
CVSS 6.8
Date 2026-09-08T06:00:00+00:00
Source cisa-csaf
Published by CISA

// Description

Successful exploitation of this vulnerability could allow an attacker to take full control of the device.

// Vulnerabilities (1)

CVE ID CVSS Score Severity Description
CVE-2026-85083 6.8 medium
The ANJIA AJL33PC0801 IP camera uses a hard-coded credential for bootloader authentication. An attacker with physical access to the device may leverage this weakness to gain privileged bootloader access, allowing unauthorized modification of firmware and system configuration and potentially resulting in complete device compromise.

// Remediations (1)

Mitigation: CareCam has not responded to CISA's attempts for coordination. Users are encouraged to reach out to
CareCam has not responded to CISA's attempts for coordination. Users are encouraged to reach out to CareCam.

// References