vendor:
ADH-Web Server IP-Cameras
by:
N/A
CVSS
N/A
Information Exposure
200
CWE
Product Name: ADH-Web Server IP-Cameras
Affected Version From:
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Platforms Tested:
2015
ADH-Web Server IP-Cameras Improper Access Restrictions
Due to improper access restriction the ADH-Web device allows a remote attacker to browse and access arbitrary files from the '/hdd0/logs' directory. It is also possible to gather important information via the 'variable.cgi' script.
Mitigation:
Implement proper access restrictions to prevent unauthorized access to files. Update the device firmware to fix the vulnerability.