7.5

CVE-2013-4985

Exploit

Multiple Vivotek IP Cameras remote authentication bypass that could allow access to the video stream

Data is provided by the National Vulnerability Database (NVD)
VivotekIp7160 Firmware Version0105a
   VivotekIp7160 Version-
VivotekIp7160 Firmware Version0105b
   VivotekIp7160 Version-
VivotekIp7361 Firmware Version0105a
   VivotekIp7361 Version-
VivotekIp7361 Firmware Version0105b
   VivotekIp7361 Version-
VivotekIp8332 Firmware Version0105a
   VivotekIp8332 Version-
VivotekIp8332 Firmware Version0105b
   VivotekIp8332 Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 26.83% 0.962
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-863 Incorrect Authorization

The product performs an authorization check when an actor attempts to access a resource or perform an action, but it does not correctly perform the check.