A vulnerability, which was classified as critical, was found in Yi Technology YI Home Camera 2 2.1.1_20171024151200. This affects an unknown function of the component WPA/WPS. Executing a manipulation can lead to use of hard-coded cryptographic key
.
.
This vulnerability is handled as CVE-2026-4477. The attack can only be done within the local network. Additionally, an exploit exists.
The vendor was contacted early about this disclosure but did not respond in any way.