ZeroHour

CVE-2017-7648

CVSS 3.0
8.1 high
EPSS
2%p76
Published
()
Modified
Description

Foscam networked devices use the same hardcoded SSL private key across different customers' installations, which allows remote attackers to defeat cryptographic protection mechanisms by leveraging knowledge of this key from another installation.

Vendors
foscam
Products
c1, c1 lite, c2, fi9800xe, fi9826p, fi9828p, fi9851p, fi9853ep, fi9901ep, fi9903p, fi9928p, r2
Weakness
CWE-798
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.