<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:webfeeds="http://webfeeds.org/rss/1.0"><channel><title>P2pcam (57.0.0.0308) - CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/products/p2pcam-57.0.0.0308/</link><description>Trending threats, MITRE ATT&amp;CK coverage, and detection metadata. Fed continuously.</description><generator>Hugo</generator><language>en</language><managingEditor>hello@craftedsignal.io</managingEditor><webMaster>hello@craftedsignal.io</webMaster><lastBuildDate>Mon, 28 Sep 2026 06:47:04 +0000</lastBuildDate><atom:link href="https://feed.craftedsignal.io/products/p2pcam-57.0.0.0308/feed.xml" rel="self" type="application/rss+xml"/><image><url>https://feed.craftedsignal.io/favicon-32x32.png</url><title>CraftedSignal Threat Feed</title><link>https://feed.craftedsignal.io/</link><width>32</width><height>32</height></image><webfeeds:icon>https://feed.craftedsignal.io/favicon.svg</webfeeds:icon><item><title>Remote Stack-based Buffer Overflow in Eyeplus p2pcam HTTP Parser</title><link>https://feed.craftedsignal.io/briefs/2026-09-eyeplus-overflow/</link><pubDate>Mon, 28 Sep 2026 06:47:04 +0000</pubDate><author>hello@craftedsignal.io</author><guid isPermaLink="true">https://feed.craftedsignal.io/briefs/2026-09-eyeplus-overflow/</guid><description>A stack-based buffer overflow vulnerability in the p2pcam HTTP Parser component of Eyeplus 57.0.0.0308 allows remote attackers to execute arbitrary code via crafted HTTP requests.</description><content:encoded><![CDATA[<p>A stack-based buffer overflow vulnerability (CVE-2026-100908) has been identified in the p2pcam HTTP Parser component of Eyeplus version 57.0.0.0308. The vulnerability originates from improper bounds checking within an unknown function of the parser, allowing a remote attacker to trigger a buffer overflow condition. By sending a maliciously crafted HTTP request, an unauthorized remote actor can overwrite adjacent memory, potentially leading to arbitrary code execution on the target device. Publicly disclosed exploit code for this vulnerability is currently available, significantly lowering the barrier to entry for attackers. Given the nature of the p2pcam component, this risk is particularly acute for Internet-facing surveillance and camera hardware running the affected firmware version.</p>
<h2 id="impact">Impact</h2>
<p>Successful exploitation allows for unauthenticated remote code execution on the affected device, potentially leading to a complete compromise of the system, data exfiltration, or the recruitment of the device into a botnet. The severity is rated at 7.5 (CVSS v3.1), reflecting the potential for full system control by remote actors.</p>
<h2 id="recommendation">Recommendation</h2>
<ul>
<li>Identify all internet-facing devices running Eyeplus firmware version 57.0.0.0308.</li>
<li>Restrict network access to the p2pcam HTTP interface to trusted internal segments only, as this is a remote-exploitable vulnerability.</li>
<li>Contact the vendor for a security patch or firmware update addressing CVE-2026-100908.</li>
<li>Monitor ingress traffic on ports associated with the p2pcam web interface for anomalous HTTP payloads, specifically looking for abnormally long URI strings or unexpected character sequences.</li>
</ul>
]]></content:encoded><category domain="severity">low</category><category domain="type">advisory</category><category>vulnerability</category><category>rce</category><category>buffer-overflow</category></item></channel></rss>