CVE-2016-7834

SONY SNC-CH115, SNC-CH120, SNC-CH160, SNC-CH220, SNC-CH260, SNC-DH120, SNC-DH120T, SNC-DH160, SNC-DH220, SNC-DH220T, SNC-DH260, SNC-EB520, SNC-EM520, SNC-EM521, SNC-ZB550, SNC-ZM550, SNC-ZM551, SNC-EP550, SNC-EP580, SNC-ER550, SNC-ER550C, SNC-ER580, SNC-ER585, SNC-ER585H, SNC-ZP550, SNC-ZR550, SNC-EP520, SNC-EP521, SNC-ER520, SNC-ER521, SNC-ER521C network cameras with firmware before Ver.1.86.00 and SONY SNC-CX600, SNC-CX600W, SNC-EB600, SNC-EB600B, SNC-EB602R, SNC-EB630, SNC-EB630B, SNC-EB632R, SNC-EM600, SNC-EM601, SNC-EM602R, SNC-EM602RC, SNC-EM630, SNC-EM631, SNC-EM632R, SNC-EM632RC, SNC-VB600, SNC-VB600B, SNC-VB600B5, SNC-VB630, SNC-VB6305, SNC-VB6307, SNC-VB632D, SNC-VB635, SNC-VM600, SNC-VM600B, SNC-VM600B5, SNC-VM601, SNC-VM601B, SNC-VM602R, SNC-VM630, SNC-VM6305, SNC-VM6307, SNC-VM631, SNC-VM632R, SNC-WR600, SNC-WR602, SNC-WR602C, SNC-WR630, SNC-WR632, SNC-WR632C, SNC-XM631, SNC-XM632, SNC-XM636, SNC-XM637, SNC-VB600L, SNC-VM600L, SNC-XM631L, SNC-WR602CL network cameras with firmware before Ver.2.7.2 are prone to sensitive information disclosure. This may allow an attacker on the same local network segment to login to the device with administrative privileges and perform operations on the device.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:sony:snc_series_firmware:*:*:*:*:*:*:*:*
OR cpe:2.3:h:sony:snc-cx600:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-cx600w:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-eb600:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-eb600b:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-eb602r:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-eb630:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-eb630b:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-eb632r:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-em600:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-em601:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-em602r:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-em602rc:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-em630:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-em631:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-em632r:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-em632rc:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vb600:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vb600b:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vb600b5:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vb600l:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vb630:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vb6305:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vb6307:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vb632d:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vb635:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm600:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm600b:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm600b5:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm600l:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm601:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm601b:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm602r:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm630:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm6305:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm6307:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm631:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-vm632r:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-wr600:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-wr602:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-wr602c:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-wr602cl:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-wr630:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-wr632:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-wr632c:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-xm631:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-xm631l:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-xm632:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-xm636:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-xm637:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:sony:snc_series_firmware:*:*:*:*:*:*:*:*
OR cpe:2.3:h:sony:snc-ch115:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-ch120:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-ch160:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-ch220:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-ch260:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-dh120:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-dh120t:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-dh160:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-dh220:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-dh220t:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-dh260:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-eb520:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-em520:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-em521:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-ep520:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-ep521:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-ep550:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-ep580:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-er520:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-er521:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-er521c:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-er550:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-er550c:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-er580:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-er585:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-er585h:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-zb550:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-zm550:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-zm551:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-zp550:-:*:*:*:*:*:*:*
cpe:2.3:h:sony:snc-zr550:-:*:*:*:*:*:*:*

History

21 Nov 2024, 02:58

Type Values Removed Values Added
References () https://jvn.jp/en/vu/JVNVU96435227/index.html - Third Party Advisory, VDB Entry () https://jvn.jp/en/vu/JVNVU96435227/index.html - Third Party Advisory, VDB Entry
References () https://www.sony.co.uk/pro/article/sony-new-firmware-for-network-cameras - Patch, Vendor Advisory () https://www.sony.co.uk/pro/article/sony-new-firmware-for-network-cameras - Patch, Vendor Advisory

Information

Published : 2017-04-13 17:59

Updated : 2024-11-21 02:58


NVD link : CVE-2016-7834

Mitre link : CVE-2016-7834

CVE.ORG link : CVE-2016-7834


JSON object : View

Products Affected

sony

  • snc-vb600l
  • snc-wr602
  • snc-er585h
  • snc-er550
  • snc-er520
  • snc-dh120t
  • snc-zb550
  • snc-vb6305
  • snc-vm600b
  • snc-vm630
  • snc-vm601
  • snc-er521c
  • snc-ch260
  • snc-cx600
  • snc-em602rc
  • snc-em632rc
  • snc-vm601b
  • snc-zm551
  • snc-xm637
  • snc-wr602c
  • snc-ch220
  • snc-em630
  • snc-vm631
  • snc-dh220t
  • snc-em600
  • snc-vb635
  • snc-dh220
  • snc-xm631l
  • snc-ep520
  • snc-er521
  • snc-ch120
  • snc-dh120
  • snc-vb632d
  • snc-em520
  • snc-vb600
  • snc-vm600l
  • snc-em632r
  • snc-wr600
  • snc-cx600w
  • snc-zm550
  • snc-eb520
  • snc-er550c
  • snc-zp550
  • snc-vm6305
  • snc-vb600b
  • snc-dh160
  • snc-ch160
  • snc-wr632
  • snc-vb630
  • snc-em602r
  • snc-eb602r
  • snc-dh260
  • snc-em631
  • snc-xm632
  • snc-zr550
  • snc-vm600b5
  • snc-eb630b
  • snc-eb600
  • snc-wr602cl
  • snc-vm600
  • snc-vm602r
  • snc-xm631
  • snc-ep580
  • snc-vm632r
  • snc-vb600b5
  • snc-ep550
  • snc-wr632c
  • snc_series_firmware
  • snc-em601
  • snc-ep521
  • snc-eb600b
  • snc-vm6307
  • snc-eb632r
  • snc-em521
  • snc-eb630
  • snc-er580
  • snc-er585
  • snc-wr630
  • snc-xm636
  • snc-ch115
  • snc-vb6307
CWE
CWE-200

Exposure of Sensitive Information to an Unauthorized Actor