PT-2017-9770 · Foscam · Foscam C1

Publicado

2017-06-21

·

Atualizado

2022-12-14

·

CVE-2016-8731

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Foscam C1 version 1.9.1.12
Description The issue concerns hard-coded FTP credentials, specifically r:r, included in the firmware. This could allow remote access to cameras connected to the internet without port 50021 blocked by an intermediate device.
Recommendations For Foscam C1 version 1.9.1.12, consider blocking port 50021 to prevent unauthorized access until a firmware update is available that removes the hard-coded credentials.

Correção

Using Hardcoded Credentials

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2016-8731

Produtos afetados

Foscam C1