Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-12499

Опубликовано: 02 июл. 2018
Источник: nvd
CVSS3: 7.4
CVSS2: 5.8
EPSS Низкий

Описание

The Motorola MBP853 firmware does not correctly validate server certificates. This allows for a Man in The Middle (MiTM) attack to take place between a Motorola MBP853 camera and the servers it communicates with. In one such instance, it was identified that the device was downloading what appeared to be a client certificate.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:motorola:mbp853_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:motorola:mbp853:-:*:*:*:*:*:*:*

EPSS

Процентиль: 30%
0.00111
Низкий

7.4 High

CVSS3

5.8 Medium

CVSS2

Дефекты

CWE-295

Связанные уязвимости

CVSS3: 7.4
github
больше 3 лет назад

The Motorola MBP853 firmware does not correctly validate server certificates. This allows for a Man in The Middle (MiTM) attack to take place between a Motorola MBP853 camera and the servers it communicates with. In one such instance, it was identified that the device was downloading what appeared to be a client certificate.

EPSS

Процентиль: 30%
0.00111
Низкий

7.4 High

CVSS3

5.8 Medium

CVSS2

Дефекты

CWE-295