Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Pablo Treviño Llorens

#41430of 53,633
6.5Total CVSS
Vulnerabilities · 1
PT-2017-11510
6.5
2017-07-02
Tp Link · Tp-Link Nc250 · CVE-2017-10796
**Name of the Vulnerable Software and Affected Versions** TP-Link NC250 versions prior to 1.2.1 build 170515 **Description** The issue allows unauthorized access to video and audio streams. An attacker can view video and audio without authentication by accessing the "rtsp://admin@yourip:554/h264 hd.sdp" URL. **Recommendations** For TP-Link NC250 versions prior to 1.2.1 build 170515, consider restricting access to the rtsp URL until a patch is available. Avoid using the default admin credentials in the rtsp URL to minimize the risk of exploitation.