vendor:
IP Camera
by:
icekam,xiao13,Rainbow,tfsec
7,5
CVSS
HIGH
Unauthorized Access Vulnerabilities
287
CWE
Product Name: IP Camera
Affected Version From: Compro IP70 2.08_7130218, IP570 2.08_7130520, IP60, TN540
Affected Version To: Compro IP70 2.08_7130218, IP570 2.08_7130520, IP60, TN540
Patch Exists: YES
Related CWE: CVE-2021-40380
CPE: h:compro_technology:ip_camera
Metasploit:
N/A
Other Scripts:
https://www.infosecmatter.com/nessus-plugin-library/?id=24315, https://www.infosecmatter.com/nessus-plugin-library/?id=35323, https://www.infosecmatter.com/nessus-plugin-library/?id=24810, https://www.infosecmatter.com/nessus-plugin-library/?id=36838, https://www.infosecmatter.com/nessus-plugin-library/?id=60393, https://www.infosecmatter.com/nessus-plugin-library/?id=24653, https://www.infosecmatter.com/nessus-plugin-library/?id=40372, https://www.infosecmatter.com/nessus-plugin-library/?id=27292, https://www.infosecmatter.com/nessus-plugin-library/?id=31089, https://www.infosecmatter.com/nessus-plugin-library/?id=32139
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2021
Compro Technology IP Camera – ‘Multiple’ Credential Disclosure
There are unauthorized access vulnerabilities, which can lead to the disclosure of device administrator usernames and passwords or rstp usernames and passwords.
Mitigation:
Ensure that all users have strong passwords and that they are changed regularly. Implement access control measures to restrict access to the device.