Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-86hj-9869-w59w

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The Telnet service of Rubetek cameras RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) could allow an remote attacker to take full control of the device with a high-privileged account. The vulnerability exists because a system account has a default and static password. The Telnet service cannot be disabled and this password cannot be changed via standard functionality.

The Telnet service of Rubetek cameras RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) could allow an remote attacker to take full control of the device with a high-privileged account. The vulnerability exists because a system account has a default and static password. The Telnet service cannot be disabled and this password cannot be changed via standard functionality.

EPSS

Процентиль: 88%
0.03944
Низкий

Связанные уязвимости

CVSS3: 9.8
nvd
больше 5 лет назад

The Telnet service of Rubetek cameras RV-3406, RV-3409, and RV-3411 cameras (firmware versions v342, v339) could allow an remote attacker to take full control of the device with a high-privileged account. The vulnerability exists because a system account has a default and static password. The Telnet service cannot be disabled and this password cannot be changed via standard functionality.

CVSS3: 9.8
fstec
больше 5 лет назад

Уязвимость cлужбы telnet микропрограммного обеспечения Wi-Fi камер Rubetek RV-3406, RV-3409 и RV-3411, позволяющая нарушителю получить полный контроль над устройством

EPSS

Процентиль: 88%
0.03944
Низкий