u3000py
Author
turretsec
Published
2026-08-13
Stars
0
Forks
0
Repository
Description
Python client for the Thinkware U3000 dashcam's local WiFi control protocol, reverse-engineered from the official Android app. PoC tooling behind CVE-2026-101053, CVE-2026-101054, and CVE-2026-101055.
CVE-CVE-2026-101053 Details
Severity
HIGH
CVSS Score
7.3
CWE
CWE-266
Description
A vulnerability was determined in Thinkware U3000 up to 1.02.04. This impacts the function PUT_FILE of the file /tmp/wpa_supplicant.conf of the component TCP Service. Executing a manipulation of the argument path can lead to improper access controls. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way....
Related PoCs for CVE-2026-101053
No other PoCs found for this CVE.