CVE-2017-6180

Keekoon KK002 devices 1.8.12 HD have a Cross Site Request Forgery Vulnerability affecting goform/formChnUserPwd and goform/formUserMng (and the entire set of other pages).
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:keekoonvision:kk002_ip_camera_firmware:1.8.12:*:*:*:*:*:*:*
cpe:2.3:h:keekoonvision:kk002_ip_camera:-:*:*:*:*:*:*:*

History

21 Nov 2024, 03:29

Type Values Removed Values Added
References () https://hsw69.wordpress.com/2015/10/22/keekoon-kk002-ip-camera-csrf-exploitation/ - Exploit, Third Party Advisory () https://hsw69.wordpress.com/2015/10/22/keekoon-kk002-ip-camera-csrf-exploitation/ - Exploit, Third Party Advisory

Information

Published : 2017-03-13 06:59

Updated : 2024-11-21 03:29


NVD link : CVE-2017-6180

Mitre link : CVE-2017-6180

CVE.ORG link : CVE-2017-6180


JSON object : View

Products Affected

keekoonvision

  • kk002_ip_camera
  • kk002_ip_camera_firmware
CWE
CWE-352

Cross-Site Request Forgery (CSRF)