CVE-2024-31799

Information Disclosure in GNCC's GC2 Indoor Security Camera 1080P allows an attacker with physical access to read the WiFi passphrase via the UART Debugging Port.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:gncchome:gncc_c2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:gncchome:_gncc_c2:-:*:*:*:*:*:*:*

History

16 Aug 2024, 18:35

Type Values Removed Values Added
CWE CWE-200

16 Aug 2024, 13:58

Type Values Removed Values Added
References () https://gncchome.com/collections/indoor-camera/products/c2-indoor-security-camera-1080p - () https://gncchome.com/collections/indoor-camera/products/c2-indoor-security-camera-1080p - Product
References () https://www.nsideattacklogic.de/advisories/NSIDE-SA-2024-001 - () https://www.nsideattacklogic.de/advisories/NSIDE-SA-2024-001 - Exploit, Third Party Advisory
Summary
  • (es) La divulgación de información en GNCC's GC2 Indoor Security Camera 1080P permite a un atacante con acceso físico leer la frase de contraseña de WiFi a través del puerto de depuración UART.
CWE CWE-319
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 4.6
CPE cpe:2.3:o:gncchome:gncc_c2_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:gncchome:_gncc_c2:-:*:*:*:*:*:*:*
First Time Gncchome gncc C2 Firmware
Gncchome Gncc C2
Gncchome

15 Aug 2024, 17:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-08-15 17:15

Updated : 2024-08-16 18:35


NVD link : CVE-2024-31799

Mitre link : CVE-2024-31799

CVE.ORG link : CVE-2024-31799


JSON object : View

Products Affected

gncchome

  • _gncc_c2
  • gncc_c2_firmware
CWE
CWE-319

Cleartext Transmission of Sensitive Information

CWE-200

Exposure of Sensitive Information to an Unauthorized Actor