vendor:
IP Camera
by:
icekam,xiao13,Rainbow,tfsec
7,5
CVSS
HIGH
Unauthorized access to RTSP
287
CWE
Product Name: IP Camera
Affected Version From: Compro IP70 2.08_7130218, IP570 2.08_7130520, IP60, TN540
Affected Version To: Compro IP70 2.08_7130218, IP570 2.08_7130520, IP60, TN540
Patch Exists: YES
Related CWE: CVE-2021-40379
CPE: h:compro_technology:ip_camera
Metasploit:
N/A
Other Scripts:
https://www.infosecmatter.com/nessus-plugin-library/?id=40379, https://www.infosecmatter.com/nessus-plugin-library/?id=43835, https://www.infosecmatter.com/nessus-plugin-library/?id=43840, https://www.infosecmatter.com/nessus-plugin-library/?id=31772, https://www.infosecmatter.com/nessus-plugin-library/?id=29856, https://www.infosecmatter.com/nessus-plugin-library/?id=63854, https://www.infosecmatter.com/nessus-plugin-library/?id=60440, https://www.infosecmatter.com/nessus-plugin-library/?id=41210, https://www.infosecmatter.com/nessus-plugin-library/?id=43837, https://www.infosecmatter.com/nessus-plugin-library/?id=29872
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2021
Compro Technology IP Camera – RTSP stream disclosure (Unauthenticated)
Some devices have unauthorized access to rstp, which can lead to the leakage of surveillance video stream information.
Mitigation:
Ensure that all RTSP streams are properly authenticated and access is restricted to authorized users.