The sensitive information of webcam device is not properly protected. Remote attackers can unauthentically grant user’s credential.
Conclusion & alert: CVE-2021-30169 is rated Moderate Risk (47.8/100): CVSS Medium severity, with medium exploitation likelihood (EPSS 1.68%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-15 | 0.95% | 1.68% | +0.73% |
| 2 | 2025-12-18 | 0.70% | 0.95% | +0.25% |
| 3 | 2025-11-21 | — | 0.70% | — |
Full EPSS history (17 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 5.3 | 3.1 | MEDIUM |
|
3.9 | 1.4 | [email protected] |
| 7.5 | 3.1 | HIGH |
|
3.9 | 3.6 | [email protected] |
| 5.0 | 2.0 | MEDIUM |
|
10.0 | 2.9 | [email protected] |
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| meritlilin | p2r8852e2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r8852e2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r8852e4_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r8852e4_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6852e2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6852e2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6852e4_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6852e4_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6552e2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6552e2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6552e4_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6552e4_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6352ae2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6352ae2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6352ae4_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6352ae4_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r3052ae2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r3052ae2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2g1052_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2g1052_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r8822e2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r8822e2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r8822e4_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r8822e4_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6822e2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6822e2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6822e4_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6822e4_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6522e2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6522e2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6522e4_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6522e4_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6322ae2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6322ae2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r6322ae4_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r6322ae4_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2r3022ae2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2r3022ae2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2g1022_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2g1022_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p2g1022x_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p2g1022x_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r8852ax_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r8852ax_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r8152x-p_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r8152x-p_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r8152x2-p_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r8152x2-p_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r8052ex25_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r8052ex25_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r6552x_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r6552x_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r6452ax_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r6452ax_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r6452ax-p_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r6452ax-p_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r8822ax_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r8822ax_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r8122x-p_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r8122x-p_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r8122x2-p_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r8122x2-p_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r8022ex25_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r8022ex25_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r6522x_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r6522x_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r6422ax_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r6422ax_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z2r6422ax-p_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z2r6422ax-p_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p3r6322e2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p3r6322e2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p3r6522e2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p3r6522e2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | p3r8822e2_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:p3r8822e2_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z3r6422x3_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z3r6422x3_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z3r6522x_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z3r6522x_firmware:*:*:*:*:*:*:*:* |
| meritlilin | z3r8922x3_firmware | < 7.1.94.8908 | cpe:2.3:o:meritlilin:z3r8922x3_firmware:*:*:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://gist.github.com/keniver/86ebef688fb274b534da51ef1a84dd3e | Third Party Advisory |
| https://www.chtsecurity.com/news/0b733a38-e616-4ff3-86a6-13e710643388 | Third Party Advisory |
| https://www.meritlilin.com/assets/uploads/support/file/M00166-TW.pdf | Vendor Advisory |
| https://www.twcert.org.tw/tw/cp-132-4679-d308c-1.html | Third Party Advisory |