PT-2023-10708 · Abus · Abus Tvip Cameras

A2Nkf

+5

·

Published

2023-10-26

·

Updated

2023-11-07

·

CVE-2018-17879

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ABUS TVIP cameras (affected versions not specified)
Description An issue was discovered in certain ABUS TVIP cameras, where the CGI scripts allow remote attackers to execute code via system() as root. There are several injection points in various scripts.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

OS Command Injection

Weakness Enumeration

Related Identifiers

CVE-2018-17879

Affected Products

Abus Tvip Cameras