PT-2023-8872 · Uniview · Uniview Ip Camera

Arko Dhar

+1

·

Published

2023-09-19

·

Updated

2024-03-27

·

CVE-2023-0773

CVSS v2.0

10

Critical

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Uniview IP Camera (affected versions not specified)
Description The issue is related to identification and authentication failure at the web-based management interface of Uniview IP Camera. A remote attacker could exploit this by sending specially crafted HTTP requests to the vulnerable device, potentially gaining complete control of the targeted device. The vulnerability allows remote attackers to bypass the authentication process and gain unauthorized access by sending specially crafted packets.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Weakness Enumeration

Related Identifiers

BDU:2024-02512
CVE-2023-0773

Affected Products

Uniview Ip Camera