PT-2015-7756 · Rsi Video Technologies · Videofied
Andrew Tierney
·
Published
2015-12-27
·
Updated
2015-12-28
·
CVE-2015-8253
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
RSI Video Technologies Videofied devices using the Frontel protocol version prior to 3
Description
The issue allows remote attackers to obtain sensitive message or MJPEG video data by sniffing the network, as the Frontel protocol sets up AES encryption but sends all traffic in cleartext.
Recommendations
For versions prior to 3, update the Frontel protocol to version 3 or later to ensure encrypted traffic.
Exploit
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Videofied