### [CVE-2018-3947](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-3947) ![](https://img.shields.io/static/v1?label=Product&message=Yi%20Technology&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue) ![](https://img.shields.io/static/v1?label=Vulnerability&message=Cleartext%20Transmission%20of%20Sensitive%20Information&color=brighgreen) ### Description An exploitable information disclosure vulnerability exists in the phone-to-camera communications of Yi Home Camera 27US 1.8.7.0D. An attacker can sniff network traffic to exploit this vulnerability. ### POC #### Reference - https://talosintelligence.com/vulnerability_reports/TALOS-2018-0616 - https://talosintelligence.com/vulnerability_reports/TALOS-2018-0616 #### Github No PoCs found on GitHub currently.