Show filters
162 Total Results
Displaying 41-50 of 162
Sort by:
Attacker Value
Unknown
CVE-2021-3615
Disclosure Date: August 17, 2021 (last updated February 23, 2025)
A vulnerability was reported in Lenovo Smart Camera X3, X5, and C2E that could allow code execution if a specific file exists on the attached SD card. This vulnerability is the same as CNVD-2021-45262.
0
Attacker Value
Unknown
CVE-2019-20467
Disclosure Date: July 22, 2021 (last updated July 30, 2024)
An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. The device by default has a TELNET interface available (which is not advertised or functionally used, but is nevertheless available). Two backdoor accounts (root and default) exist that can be used on this interface. The usernames and passwords of the backdoor accounts are the same on all devices. Attackers can use these backdoor accounts to obtain access and execute code as root within the device.
0
Attacker Value
Unknown
CVE-2021-33818
Disclosure Date: June 18, 2021 (last updated February 22, 2025)
An issue was discovered in UniFi Protect G3 FLEX Camera Version UVC.v4.30.0.67. Attackers can use slowhttptest tool to send incomplete HTTP request, which could make server keep waiting for the packet to finish the connection, until its resource exhausted. Then the web server is denial-of-service.
0
Attacker Value
Unknown
CVE-2021-33820
Disclosure Date: June 18, 2021 (last updated November 28, 2024)
An issue was discovered in UniFi Protect G3 FLEX Camera Version UVC.v4.30.0.67.Attacker could send a huge amount of TCP SYN packet to make web service's resource exhausted. Then the web server is denial-of-service.
0
Attacker Value
Unknown
CVE-2019-20466
Disclosure Date: April 02, 2021 (last updated February 22, 2025)
An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. A local attacker with the "default" account is capable of reading the /etc/passwd file, which contains a weakly hashed root password. By taking this hash and cracking it, the attacker can obtain root rights on the device.
0
Attacker Value
Unknown
CVE-2019-20463
Disclosure Date: April 02, 2021 (last updated July 30, 2024)
An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. A crash and reboot can be triggered by crafted IP traffic, as demonstrated by the Nikto vulnerability scanner. For example, sending the 111111 string to UDP port 20188 causes a reboot. To deny service for a long time period, the crafted IP traffic may be sent periodically.
0
Attacker Value
Unknown
CVE-2019-20464
Disclosure Date: April 02, 2021 (last updated February 22, 2025)
An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. By default, a mobile application is used to stream over UDP. However, the device offers many more services that also enable streaming. Although the service used by the mobile application requires a password, the other streaming services do not. By initiating communication on the RTSP port, an attacker can obtain access to the video feed without authenticating.
0
Attacker Value
Unknown
CVE-2019-20465
Disclosure Date: April 02, 2021 (last updated July 30, 2024)
An issue was discovered on Sannce Smart HD Wifi Security Camera EAN 2 950004 595317 devices. It is possible (using TELNET without a password) to control the camera's pan/zoom/tilt functionality.
0
Attacker Value
Unknown
CVE-2020-19643
Disclosure Date: March 30, 2021 (last updated February 22, 2025)
Cross Site Scripting (XSS) vulnerability in INSMA Wifi Mini Spy 1080P HD Security IP Camera 1.9.7 B via all fields in the FTP settings page to the "goform/formSetFtpCfg" settings page.
0
Attacker Value
Unknown
CVE-2020-19640
Disclosure Date: March 30, 2021 (last updated November 28, 2024)
An issue was discovered in INSMA Wifi Mini Spy 1080P HD Security IP Camera 1.9.7 B. An unauthenticated attacker can reboot the device causing a Denial of Service, via a hidden reboot command to '/media/?action=cmd'.
0