cgi-bin/operator/param in AirLive WL2600CAM and possibly other camera models allows remote attackers to obtain the administrator password via a list action.
References
Link | Resource |
---|---|
http://seclists.org/fulldisclosure/2013/Jun/84 | Exploit |
http://seclists.org/fulldisclosure/2013/Jun/84 | Exploit |
Configurations
History
21 Nov 2024, 01:54
Type | Values Removed | Values Added |
---|---|---|
References | () http://seclists.org/fulldisclosure/2013/Jun/84 - Exploit |
Information
Published : 2013-10-11 21:55
Updated : 2024-11-21 01:54
NVD link : CVE-2013-3686
Mitre link : CVE-2013-3686
CVE.ORG link : CVE-2013-3686
JSON object : View
Products Affected
ovislink
- airlive_wl2600cam
CWE
CWE-264
Permissions, Privileges, and Access Controls