ZeroHour

CVE-2017-2855

PoC
CVSS 3.1
8.1 high
EPSS
2%p75
Published
()
Modified
Description

An exploitable buffer overflow vulnerability exists in the DDNS client used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.43. On devices with DDNS enabled, an attacker who is able to intercept HTTP connections will be able to fully compromise the device by creating a rogue HTTP server.

Vendors
foscam
Products
c1 firmware
Weakness
CWE-120
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news