ZeroHour

CVE-2018-17240

PoC
CVSS 3.1
7.5 high
EPSS
4%p89
Published
()
Modified
Description

There is a memory dump vulnerability on Netwave IP camera devices at //proc/kcore that allows an unauthenticated attacker to exfiltrate sensitive information from the network configuration (e.g., username and password).

Vendors
netwavepr
Products
indoor ip camera firmware, outdoor ip camera firmware
Weakness
CWE-401
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.