Количество 3
Количество 3
CVE-2018-18767
An issue was discovered in D-Link 'myDlink Baby App' version 2.04.06. Whenever actions are performed from the app (e.g., change camera settings or play lullabies), it communicates directly with the Wi-Fi camera (D-Link 825L firmware 1.08) with the credentials (username and password) in base64 cleartext. An attacker could conduct an MitM attack on the local network and very easily obtain these credentials.
GHSA-rjhq-673f-g5h2
An issue was discovered in D-Link 'myDlink Baby App' version 2.04.06. Whenever actions are performed from the app (e.g., change camera settings or play lullabies), it communicates directly with the Wi-Fi camera (D-Link 825L firmware 1.08) with the credentials (username and password) in base64 cleartext. An attacker could conduct an MitM attack on the local network and very easily obtain these credentials.
BDU:2023-02829
Уязвимость сетевой камеры для наблюдения D-Link 825L|, связанная с использованием слабого механизма шифрования, позволяющая нарушителю выполнить атаку «человек посередине» (MITM)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2018-18767 An issue was discovered in D-Link 'myDlink Baby App' version 2.04.06. Whenever actions are performed from the app (e.g., change camera settings or play lullabies), it communicates directly with the Wi-Fi camera (D-Link 825L firmware 1.08) with the credentials (username and password) in base64 cleartext. An attacker could conduct an MitM attack on the local network and very easily obtain these credentials. | CVSS3: 7 | 0% Низкий | около 7 лет назад | |
GHSA-rjhq-673f-g5h2 An issue was discovered in D-Link 'myDlink Baby App' version 2.04.06. Whenever actions are performed from the app (e.g., change camera settings or play lullabies), it communicates directly with the Wi-Fi camera (D-Link 825L firmware 1.08) with the credentials (username and password) in base64 cleartext. An attacker could conduct an MitM attack on the local network and very easily obtain these credentials. | CVSS3: 7 | 0% Низкий | больше 3 лет назад | |
BDU:2023-02829 Уязвимость сетевой камеры для наблюдения D-Link 825L|, связанная с использованием слабого механизма шифрования, позволяющая нарушителю выполнить атаку «человек посередине» (MITM) | CVSS3: 7 | 0% Низкий | около 7 лет назад |
Уязвимостей на страницу