The use of the cyclic redundancy check (CRC) algorithm for integrity check during firmware update makes TRENDnet TV-IP651WI Network Camera firmware version v1.07.01 and earlier vulnerable to firmware modification attacks. An attacker can conduct a man-in-the-middle (MITM) attack to modify the new firmware image and bypass the checksum verification.
References
Link Resource
https://hackmd.io/%40slASVrz_SrW7NQCsunofeA/HJl1oFzci Exploit Third Party Advisory
https://www.trendnet.com/support/ Vendor Advisory
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2023-02-02T00:00:00

Updated: 2023-02-02T00:00:00

Reserved: 2023-01-11T00:00:00


Link: CVE-2023-23120

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2023-02-02T17:17:55.583

Modified: 2023-02-09T21:52:42.807


Link: CVE-2023-23120

JSON object: View

cve-icon Redhat Information

No data.

CWE