Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pcj6-w288-348m

Опубликовано: 09 июл. 2024
Источник: github
Github: Не прошло ревью
CVSS4: 8.6

Описание

Longse model LBH30FE200W cameras, as well as products based on this device, make use of telnet passwords which follow a specific pattern. Once the pattern is known, brute-forcing the password becomes relatively easy.  Additionally, every camera with the same firmware version shares the same password.

Longse model LBH30FE200W cameras, as well as products based on this device, make use of telnet passwords which follow a specific pattern. Once the pattern is known, brute-forcing the password becomes relatively easy.  Additionally, every camera with the same firmware version shares the same password.

EPSS

Процентиль: 26%
0.00092
Низкий

8.6 High

CVSS4

Дефекты

CWE-1391

Связанные уязвимости

nvd
больше 1 года назад

Longse model LBH30FE200W cameras, as well as products based on this device, make use of telnet passwords which follow a specific pattern. Once the pattern is known, brute-forcing the password becomes relatively easy.  Additionally, every camera with the same firmware version shares the same password.

EPSS

Процентиль: 26%
0.00092
Низкий

8.6 High

CVSS4

Дефекты

CWE-1391