cgi-bin/operator/param in AirLive WL2600CAM and possibly other camera models allows remote attackers to obtain the administrator password via a list action.
References
Link | Resource |
---|---|
http://seclists.org/fulldisclosure/2013/Jun/84 | Exploit |
Configurations
Information
Published : 2013-10-11 14:55
Updated : 2013-10-15 07:15
NVD link : CVE-2013-3686
Mitre link : CVE-2013-3686
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
ovislink
- airlive_wl2600cam