CVE-2019-19299

A vulnerability has been identified in SiNVR/SiVMS Video Server (All versions). The streaming service (default port 5410/tcp) of the SiVMS/SiNVR Video Server applies weak cryptography when exposing device (camera) passwords. This could allow an unauthenticated remote attacker to read and decrypt the passwords and conduct further attacks.
References
Link Resource
https://cert-portal.siemens.com/productcert/pdf/ssa-844761.pdf Mitigation Vendor Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:siemens:sinvr\/sivms_video_server:*:*:*:*:*:*:*:*

Information

Published : 2020-03-10 13:15

Updated : 2022-04-29 06:29


NVD link : CVE-2019-19299

Mitre link : CVE-2019-19299


JSON object : View

CWE
CWE-326

Inadequate Encryption Strength

Advertisement

dedicated server usa

Products Affected

siemens

  • sinvr\/sivms_video_server