PT-2024-13932 · Camera · Camera
Published
2024-02-19
·
Updated
2024-07-02
·
CVE-2023-5038
CVSS v4.0
8.7
High
| Vector | AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N |
Name of the Vulnerable Software and Affected Versions
Camera (affected versions not specified)
Description
A flaw has been discovered that allows for an unauthenticated Denial of Service (DoS) attack on the camera. By running a crafted URL, an attacker can prevent access to the web management page of the camera, requiring a manual restart or re-powering of the device. The estimated number of potentially affected devices worldwide is not available. There is no information about real-world incidents where this issue was exploited.
Recommendations
For the affected camera versions, update to the patch firmware released by the manufacturer to resolve the issue.
As a temporary workaround, consider restricting access to the web management page until the patch is applied.
Refer to the manufacturer's report for details and workarounds.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Camera