| |
Vulnerability CVE-2019-3424
Published: 2019-11-18 Modified: 2019-11-19
Description: |
authentication issues vulnerability, which exists in V2.1.14 and below versions of C520V21 smart camera devices. An attacker can automatically obtain access to web services from the authorized browser of the same computer and perform operations. |
Type:
CWE-287 (Improper Authentication)
CVSS2 => (AV:N/AC:L/Au:N/C:P/I:P/A:N)
CVSS Base Score |
Impact Subscore |
Exploitability Subscore |
6.4/10 |
4.9/10 |
10/10 |
Exploit range |
Attack complexity |
Authentication |
Remote |
Low |
No required |
Confidentiality impact |
Integrity impact |
Availability impact |
Partial |
Partial |
None |
References: |
http://support.zte.com.cn/support/news/LoopholeInfoDetail.aspx?newsId=1011842
|
|
|
Copyright 2024, cxsecurity.com
|
|
|