Insecure permissions in the Web management portal on all IP cameras based on Hisilicon Hi3510 firmware allow authenticated malicious users to receive a network's cleartext WiFi credentials via a specific HTTP request. This affects certain devices labeled as HI3510, HI3518, LOOSAFE, LEVCOECAM, Sywstoda, BESDER, WUSONGLUSAN, GADINAN, Unitoptek, ESCAM, etc.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
hisilicon hi3510_firmware - |