Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2019-6698

Опубликовано: 23 авг. 2019
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

Use of Hard-coded Credentials vulnerability in FortiRecorder all versions below 2.7.4 may allow an unauthenticated attacker with knowledge of the aforementioned credentials and network access to FortiCameras to take control of those, provided they are managed by a FortiRecorder device.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:o:fortinet:fortirecorder_firmware:*:*:*:*:*:*:*:*
Версия до 2.7.4 (исключая)

Одно из

cpe:2.3:h:fortinet:fortirecorder_100d:-:*:*:*:*:*:*:*
cpe:2.3:h:fortinet:fortirecorder_200d:-:*:*:*:*:*:*:*
cpe:2.3:h:fortinet:fortirecorder_400d:-:*:*:*:*:*:*:*

EPSS

Процентиль: 77%
0.01002
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-798

Связанные уязвимости

CVSS3: 9.8
github
больше 3 лет назад

Use of Hard-coded Credentials vulnerability in FortiRecorder all versions below 2.7.4 may allow an unauthenticated attacker with knowledge of the aforementioned credentials and network access to FortiCameras to take control of those, provided they are managed by a FortiRecorder device.

EPSS

Процентиль: 77%
0.01002
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-798