Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
pierrekimsec vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv3
CVE-2017-8223
On Wireless IP Camera (P2P) WIFICAM devices, an attacker can use the RTSP server on port 10554/tcp to watch the streaming without authentication via tcp/av0_1 or tcp/av0_0.
Wificam Wireless Ip Camera \\(p2p\\) Firmware -
1 EDB exploit
9.8
CVSSv3
CVE-2017-8225
On Wireless IP Camera (P2P) WIFICAM devices, access to .ini files (containing credentials) is not correctly checked. An attacker can bypass authentication by providing an empty loginuse parameter and an empty loginpas parameter in the URI.
Wificam Wireless Ip Camera \\(p2p\\) Firmware -
1 EDB exploit
2 Github repositories
7.5
CVSSv3
CVE-2017-8222
Wireless IP Camera (P2P) WIFICAM devices have an "Apple Production IOS Push Services" private RSA key and certificate stored in /system/www/pem/ck.pem inside the firmware, which allows malicious users to obtain sensitive information.
Wificam Wireless Ip Camera \\(p2p\\) Firmware -
1 EDB exploit
7.5
CVSSv3
CVE-2017-8221
Wireless IP Camera (P2P) WIFICAM devices rely on a cleartext UDP tunnel protocol (aka the Cloud feature) for communication between an Android application and a camera device, which allows remote malicious users to obtain sensitive information by sniffing the network.
Wificam Wireless Ip Camera \\(p2p\\) Firmware -
1 EDB exploit
9.8
CVSSv3
CVE-2017-8224
Wireless IP Camera (P2P) WIFICAM devices have a backdoor root account that can be accessed with TELNET.
Wificam Wireless Ip Camera \\(p2p\\) Firmware -
1 EDB exploit
7.5
CVSSv3
CVE-2017-5850
httpd in OpenBSD allows remote malicious users to cause a denial of service (memory consumption) via a series of requests for a large file using an HTTP Range header.
Openbsd Openbsd 6.0
1 EDB exploit
1 Article
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-26925
CVE-2023-41826
LFI
CVE-2022-22364
CVE-2024-2887
command injection
remote code execution
CVE-2024-34446
CVE-2022-48699
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started