Описание
A cleartext password storage issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. The file in question is /usr/local/ipsca/mipsca.db. If a camera is compromised, the attacker can gain access to passwords and abuse them to compromise further systems.
Ссылки
- Vendor Advisory
- Not ApplicableThird Party Advisory
- Vendor Advisory
- Vendor Advisory
- Not ApplicableThird Party Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 6400.0.8.5 (включая)
Одновременно
cpe:2.3:o:microdigital:mdc-n4090_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:microdigital:mdc-n4090:-:*:*:*:*:*:*:*
Конфигурация 2Версия до 6400.0.8.5 (включая)
Одновременно
cpe:2.3:o:microdigital:mdc-n4090w_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:microdigital:mdc-n4090w:-:*:*:*:*:*:*:*
Конфигурация 3Версия до 6400.0.8.5 (включая)
Одновременно
cpe:2.3:o:microdigital:mdc-n2190v_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:microdigital:mdc-n2190v:-:*:*:*:*:*:*:*
EPSS
Процентиль: 61%
0.00407
Низкий
9.8 Critical
CVSS3
5 Medium
CVSS2
Дефекты
CWE-522
Связанные уязвимости
github
больше 3 лет назад
A cleartext password storage issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. The file in question is /usr/local/ipsca/mipsca.db. If a camera is compromised, the attacker can gain access to passwords and abuse them to compromise further systems.
EPSS
Процентиль: 61%
0.00407
Низкий
9.8 Critical
CVSS3
5 Medium
CVSS2
Дефекты
CWE-522