5
CVSSv2

CVE-2017-15236

Published: 11/10/2017 Updated: 05/11/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Tiandy IP cameras 5.56.17.120 do not properly restrict a certain proprietary protocol, which allows remote malicious users to read settings via a crafted request to TCP port 3001, as demonstrated by config* files and extendword.txt.

Vulnerable Product Search on Vulmon Subscribe to Product

tiandy tiandy_ip_camera_firmware 5.56.17.120

Exploits

## Vulnerability Summary The following advisory describes sensitive information Disclosure found in Tiandy IP cameras version 55617120 Tianjin Tiandy Digital Technology Co, Ltd ( Tiandy Tech) is “one of top 10 leading CCTV manufacturer in China and a global supplier of advanced video surveillance solutions” ## Credit An independent secu ...