A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow code execution if a specific file exists on the attached SD card. This vulnerability is the same as CNVD-2021-45262.
Solution:
The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.
Link | Tags |
---|---|
https://iknow.lenovo.com.cn/detail/dc_198417.html | vendor advisory |
https://www.cnvd.org.cn/flaw/show/CNVD-2021-45262 | not applicable |