CVE Vulnerabilities

CVE-2017-10833

Direct Request ('Forced Browsing')

Published: Aug 29, 2017 | Modified: Oct 03, 2019
CVSS 3.x
9.1
CRITICAL
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
CVSS 2.x
6.4 MEDIUM
AV:N/AC:L/Au:N/C:P/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Dokodemo eye Smart HD SCR02HD Firmware 1.0.3.1000 and earlier allows remote attackers to bypass access restriction to view information or modify configurations via unspecified vectors.

Weakness

The web application does not adequately enforce appropriate authorization on all restricted URLs, scripts, or files.

Affected Software

Name Vendor Start Version End Version
Scr02hd_firmware Nippon-antenna * 1.0.3.1000 (including)

Potential Mitigations

References