Brickcom FB-100Ap, WCB-100Ap, MD-100Ap, WFB-100Ap, OB-100Ae, OSD-040E, and possibly other camera models with firmware 3.0.6.16C1 and previous versions, do not properly restrict access to configfile.dump, which allow remote malicious users to obtain sensitive information (user names, passwords, and configurations) via a get action.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
brickom 100ap_device_firmware |
||
brickom ob-100ae - |
||
brickom osd-040e - |
||
brickom fb-100ap - |
||
brickom md-100ap - |
||
brickom wcb-100ap - |
||
brickom wfb-100ap - |