vendor:
QD-900 WIFI HD Camera
by:
Todor Donev
7.5
CVSS
HIGH
Remote Configuration Disclosure
200
CWE
Product Name: QD-900 WIFI HD Camera
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: NO
Related CWE: N/A
CPE: a:escam:qd-900_wifi_hd_camera
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: N/A
2020
ESCAM QD-900 WIFI HD Camera – Remote Configuration Disclosure
This exploit allows an attacker to remotely access the configuration of the ESCAM QD-900 WIFI HD Camera. The exploit uses an HTTP request to access the configuration of the camera, which includes the username and password. The exploit is written in Perl and uses the HTTP::Request and LWP::UserAgent modules.
Mitigation:
Ensure that the camera is configured with a strong password and that access to the camera is restricted to trusted networks.