8.8
CVSSv3

CVE-2018-7781

Published: 03/07/2018 Updated: 03/10/2019
CVSS v2 Base Score: 4 | Impact Score: 2.9 | Exploitability Score: 8
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 356
Vector: AV:N/AC:L/Au:S/C:P/I:N/A:N

Vulnerability Summary

In Schneider Electric Pelco Sarix Professional 1st generation cameras with firmware versions before 3.29.69, by sending a specially crafted request an authenticated user can view password in clear text and results in privilege escalation.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

schneider-electric imps110-1_firmware

schneider-electric imps110-1e_firmware

schneider-electric imps110-1er_firmware

schneider-electric ibps110-1er_firmware

schneider-electric imp1110-1_firmware

schneider-electric imp1110-1e_firmware

schneider-electric imp1110-1er_firmware

schneider-electric ibp1110-1er_firmware

schneider-electric imp219-1_firmware

schneider-electric imp219-1e_firmware

schneider-electric imp219-1er_firmware

schneider-electric ibp219-1er_firmware

schneider-electric imp319-1_firmware

schneider-electric imp319-1e_firmware

schneider-electric imp319-1er_firmware

schneider-electric ibp319-1er_firmware

schneider-electric imp519-1_firmware

schneider-electric imp519-1e_firmware

schneider-electric imp519-1er_firmware

schneider-electric ibp519-1er_firmware