PT-2018-14787 · Opticam+1 · Opticam I5 Application Firmware+3

Published

2018-11-07

·

Updated

2019-10-03

·

CVE-2018-19074

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions Foscam C2 versions 1.11.1.8 Foscam C2 Application Firmware versions 2.72.1.32 Opticam i5 versions 1.5.2.11 Opticam i5 Application Firmware versions 2.21.1.128
Description An issue was discovered where the firewall has limited effectiveness, only blocking port 443 and partially blocking port 88.
Recommendations For Foscam C2 version 1.11.1.8, consider restricting access to ports 443 and 88 to minimize the risk of exploitation. For Foscam C2 Application Firmware version 2.72.1.32, restrict access to the device to prevent potential attacks. For Opticam i5 version 1.5.2.11, limit incoming traffic to reduce the risk of exploitation. For Opticam i5 Application Firmware version 2.21.1.128, avoid using the device until a fix is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2018-19074

Affected Products

Foscam C2
Foscam C2 Application Firmware
Opticam I5
Opticam I5 Application Firmware