Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-49cq-wwfh-q9rr

Опубликовано: 25 фев. 2022
Источник: github
Github: Не прошло ревью

Описание

Settings/network settings/wireless settings on the Alecto DVC-215IP camera version 63.1.1.173 and below shows the Wi-Fi passphrase hidden, but by editing/removing the style of the password field the password becomes visible which grants access to an internal network connected to the camera.

Settings/network settings/wireless settings on the Alecto DVC-215IP camera version 63.1.1.173 and below shows the Wi-Fi passphrase hidden, but by editing/removing the style of the password field the password becomes visible which grants access to an internal network connected to the camera.

EPSS

Процентиль: 51%
0.00276
Низкий

Дефекты

CWE-522

Связанные уязвимости

CVSS3: 8.6
nvd
почти 4 года назад

Settings/network settings/wireless settings on the Alecto DVC-215IP camera version 63.1.1.173 and below shows the Wi-Fi passphrase hidden, but by editing/removing the style of the password field the password becomes visible which grants access to an internal network connected to the camera.

EPSS

Процентиль: 51%
0.00276
Низкий

Дефекты

CWE-522