Brickcom FB-100Ap, WCB-100Ap, MD-100Ap, WFB-100Ap, OB-100Ae, OSD-040E, and possibly other camera models with firmware 3.0.6.16C1 and earlier, do not properly restrict access to configfile.dump, which allow remote attackers to obtain sensitive information (user names, passwords, and configurations) via a get action.
References
Link | Resource |
---|---|
http://seclists.org/fulldisclosure/2013/Jun/84 |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-10-03T16:14:45
Updated: 2022-10-03T16:14:45
Reserved: 2022-10-03T00:00:00
Link: CVE-2013-3689
JSON object: View
NVD Information
Status : Analyzed
Published: 2013-10-04T23:55:03.970
Modified: 2013-10-07T15:38:46.983
Link: CVE-2013-3689
JSON object: View
Redhat Information
No data.
CWE