Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3g9r-wrp4-36rm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The NTP Server configuration function of the IP camera device is not verified with special parameters. Remote attackers can perform a command Injection attack and execute arbitrary commands after logging in with the privileged permission.

The NTP Server configuration function of the IP camera device is not verified with special parameters. Remote attackers can perform a command Injection attack and execute arbitrary commands after logging in with the privileged permission.

EPSS

Процентиль: 92%
0.07536
Низкий

Дефекты

CWE-78

Связанные уязвимости

CVSS3: 7.2
nvd
почти 5 лет назад

The NTP Server configuration function of the IP camera device is not verified with special parameters. Remote attackers can perform a command Injection attack and execute arbitrary commands after logging in with the privileged permission.

EPSS

Процентиль: 92%
0.07536
Низкий

Дефекты

CWE-78