In Geutebrueck GmbH E2 Camera Series versions prior to 1.12.0.25 the DDNS configuration (in the Network Configuration panel) is vulnerable to an OS system command injection as root.
References
Link Resource
http://www.securityfocus.com/bid/106208 Third Party Advisory VDB Entry
https://ics-cert.us-cert.gov/advisories/ICSA-18-347-03 Mitigation US Government Resource Third Party Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: icscert

Published: 2018-12-14T20:00:00

Updated: 2018-12-15T10:57:01

Reserved: 2018-11-06T00:00:00


Link: CVE-2018-19007

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2018-12-14T20:29:00.297

Modified: 2019-10-09T23:37:35.553


Link: CVE-2018-19007

JSON object: View

cve-icon Redhat Information

No data.

CWE