Show filters
162 Total Results
Displaying 121-130 of 162
Sort by:
Attacker Value
Unknown
CVE-2017-2844
Disclosure Date: June 29, 2017 (last updated November 26, 2024)
In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary data in the "msmtprc" configuration file resulting in command execution. An attacker can simply send an HTTP request to the device to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2017-2848
Disclosure Date: June 29, 2017 (last updated November 26, 2024)
In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary shell characters during manual network configuration resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2017-2850
Disclosure Date: June 29, 2017 (last updated November 26, 2024)
In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary characters in the pureftpd.passwd file during a username change, which in turn allows for bypassing chroot restrictions in the FTP server. An attacker can simply send an HTTP request to the device to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2017-2846
Disclosure Date: June 29, 2017 (last updated November 26, 2024)
In the web management interface in Foscam C1 Indoor HD cameras with application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary shell characters during manual network configuration resulting in command injection. An attacker can simply send an HTTP request to the device to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2017-2843
Disclosure Date: June 27, 2017 (last updated November 26, 2024)
In the web management interface in Foscam C1 Indoor HD Camera running application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary data in the "msmtprc" configuration file resulting in command execution. An attacker can simply send an HTTP request to the device to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2017-2841
Disclosure Date: June 27, 2017 (last updated November 26, 2024)
An exploitable command injection vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.37. A specially crafted HTTP request can allow for a user to inject arbitrary data in the "msmtprc" configuration file resulting in command execution. An attacker can simply send an HTTP request to the device to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2017-2842
Disclosure Date: June 27, 2017 (last updated November 26, 2024)
In the web management interface in Foscam C1 Indoor HD Camera running application firmware 2.52.2.37, a specially crafted HTTP request can allow for a user to inject arbitrary data in the "msmtprc" configuration file resulting in command execution. An attacker can simply send an HTTP request to the device to trigger this vulnerability.
0
Attacker Value
Unknown
CVE-2017-9829
Disclosure Date: June 23, 2017 (last updated November 26, 2024)
'/cgi-bin/admin/downloadMedias.cgi' of the web service in most of the VIVOTEK Network Cameras is vulnerable, which allows remote attackers to read any file on the camera's Linux filesystem via a crafted HTTP request containing ".." sequences. This vulnerability is already verified on VIVOTEK Network Camera IB8369/FD8164/FD816BA; most others have similar firmware that may be affected.
0
Attacker Value
Unknown
CVE-2017-9828
Disclosure Date: June 23, 2017 (last updated November 26, 2024)
'/cgi-bin/admin/testserver.cgi' of the web service in most of the VIVOTEK Network Cameras is vulnerable to shell command injection, which allows remote attackers to execute any shell command as root via a crafted HTTP request. This vulnerability is already verified on VIVOTEK Network Camera IB8369/FD8164/FD816BA; most others have similar firmware that may be affected. An attack uses shell metacharacters in the senderemail parameter.
0
Attacker Value
Unknown
CVE-2017-2830
Disclosure Date: June 21, 2017 (last updated November 26, 2024)
An exploitable buffer overflow vulnerability exists in the web management interface used by the Foscam C1 Indoor HD Camera running application firmware 2.52.2.37. A specially crafted HTTP request can cause a buffer overflow resulting in overwriting arbitrary data. An attacker can simply send an HTTP request to the device to trigger this vulnerability.
0