Show filters
162 Total Results
Displaying 21-30 of 162
Sort by:
Attacker Value
Unknown

CVE-2023-24506

Disclosure Date: May 08, 2023 (last updated October 08, 2023)
Milesight NCR/camera version 71.8.0.6-r5 exposes credentials through an unspecified request.
Attacker Value
Unknown

CVE-2023-24505

Disclosure Date: May 08, 2023 (last updated October 08, 2023)
Milesight NCR/camera version 71.8.0.6-r5 discloses sensitive information through an unspecified request.
Attacker Value
Unknown

CVE-2022-34138

Disclosure Date: February 03, 2023 (last updated October 08, 2023)
Insecure direct object references (IDOR) in the web server of Biltema IP and Baby Camera Software v124 allows attackers to access sensitive information.
Attacker Value
Unknown

CVE-2022-3270

Disclosure Date: December 01, 2022 (last updated November 09, 2023)
In multiple products by Festo a remote unauthenticated attacker could use functions of an undocumented protocol which could lead to a complete loss of confidentiality, integrity and availability.
Attacker Value
Unknown

CVE-2022-40784

Disclosure Date: September 26, 2022 (last updated October 08, 2023)
Unlimited strcpy on user input when setting a locale file leads to stack buffer overflow in mIPC camera firmware 5.3.1.2003161406.
Attacker Value
Unknown

CVE-2022-40785

Disclosure Date: September 26, 2022 (last updated October 08, 2023)
Unsanitized input when setting a locale file leads to shell injection in mIPC camera firmware 5.3.1.2003161406. This allows an attacker to gain remote code execution on cameras running the firmware when a victim logs into a specially crafted mobile app.
Attacker Value
Unknown

CVE-2022-30620

Disclosure Date: July 06, 2022 (last updated October 07, 2023)
On Cellinx Camera with guest enabled, attacker with web access can elevate privileges to administrative: "1" to "0" privileges by changing the following cookie values from "is_admin", "showConfig". Administrative Privileges which allows changing various configuration in the camera.
Attacker Value
Unknown

CVE-2022-30621

Disclosure Date: July 06, 2022 (last updated October 07, 2023)
Allows a remote user to read files on the camera's OS "GetFileContent.cgi". Reading arbitrary files on the camera's OS as root user.
Attacker Value
Unknown

CVE-2018-17240

Disclosure Date: June 10, 2022 (last updated October 07, 2023)
There is a memory dump vulnerability on Netwave IP camera devices at //proc/kcore that allows an unauthenticated attacker to exfiltrate sensitive information from the network configuration (e.g., username and password).
Attacker Value
Unknown

CVE-2021-3793

Disclosure Date: November 12, 2021 (last updated February 23, 2025)
An improper access control vulnerability was reported in some Motorola-branded Binatone Hubble Cameras which could allow an unauthenticated attacker on the same network as the device to access administrative pages that could result in information disclosure or device firmware update with verified firmware.