An information leak exists in Wanscam's HW0021 network camera that allows an unauthenticated remote attacker to recover the administrator username and password via an ONVIF GetSnapshotUri request.
References
Link | Resource |
---|---|
https://www.tenable.com/security/research/tra-2017-33 | Exploit Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2018-03-28 10:29
Updated : 2019-10-09 16:22
NVD link : CVE-2017-11510
Mitre link : CVE-2017-11510
JSON object : View
CWE
CWE-522
Insufficiently Protected Credentials
Products Affected
wanscam
- hw0021_firmware
- hw0021