PT-2018-9832 · Momentum · Momentum Axel 720P

Publicado

2018-04-24

·

Atualizado

2018-08-30

·

CVE-2018-10328

CVSS v3.1

7.4

Alta

VetorAV:A/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Momentum Axel 720P version 5.1.8
Description: The issue allows remote attackers to view the RTSP video stream due to a hardcoded password of streaming for the appagent account.
Recommendations: For Momentum Axel 720P version 5.1.8, change the hardcoded password of the appagent account to a unique and secure password to prevent unauthorized access to the RTSP video stream.

Correção

Using Hardcoded Credentials

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-10328

Produtos afetados

Momentum Axel 720P