2.9
CVSSv2

CVE-2018-12674

Published: 19/10/2018 Updated: 03/10/2019
CVSS v2 Base Score: 2.9 | Impact Score: 2.9 | Exploitability Score: 5.5
CVSS v3 Base Score: 5.7 | Impact Score: 3.6 | Exploitability Score: 2.1
VMScore: 258
Vector: AV:A/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The SV3C HD Camera (L-SERIES V2.3.4.2103-S50-NTD-B20170508B and V2.3.4.2103-S50-NTD-B20170823B) stores the username and password within the cookies of a session. If an attacker gained access to these session cookies, it would be possible to gain access to the username and password of the logged-in account.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

sv3c h.264_poe_ip_camera_firmware v2.3.4.2103-s50-ntd-b20170508b

sv3c h.264_poe_ip_camera_firmware v2.3.4.2103-s50-ntd-b20170823b