CVE Vulnerabilities

CVE-2018-19068

Published: Nov 07, 2018 | Modified: Oct 03, 2019
CVSS 3.x
4.9
MEDIUM
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
CVSS 2.x
4 MEDIUM
AV:N/AC:L/Au:S/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

An issue was discovered on Foscam Opticam i5 devices with System Firmware 1.5.2.11 and Application Firmware 2.21.1.128. The CGIProxy.fcgi?cmd=setTelnetSwitch feature is authorized for hidden factory credentials.

Affected Software

Name Vendor Start Version End Version
I5_application_firmware Opticam 2.21.1.128 (including) 2.21.1.128 (including)
I5_system_firmware Opticam 1.5.2.11 (including) 1.5.2.11 (including)

References