6.4
CVE-2014-3895
- EPSS 0.3%
- Veröffentlicht 29.07.2014 20:55:08
- Zuletzt bearbeitet 12.04.2025 10:46:40
- Quelle vultures@jpcert.or.jp
- Teams Watchlist Login
- Unerledigt Login
The I-O DATA TS-WLCAM camera with firmware 1.06 and earlier, TS-WLCAM/V camera with firmware 1.06 and earlier, TS-WPTCAM camera with firmware 1.08 and earlier, TS-PTCAM camera with firmware 1.08 and earlier, TS-PTCAM/POE camera with firmware 1.08 and earlier, and TS-WLC2 camera with firmware 1.02 and earlier allow remote attackers to bypass authentication, and consequently obtain sensitive credential and configuration data, via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Iodata ≫ Ts-wptcam Camera Firmware Version <= 1.0.8
Iodata ≫ Ts-wptcam Camera Version-
Iodata ≫ Ts-wlcam Camera Firmware Version <= 1.06
Iodata ≫ Ts-wlcam Camera Version-
Iodata ≫ Ts-wlc2 Camera Firmware Version <= 1.02
Iodata ≫ Ts-wlc2 Camera Version-
Iodata ≫ Ts-ptcam Camera Firmware Version <= 1.08
Iodata ≫ Ts-ptcam Camera Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Typ | Quelle | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.3% | 0.506 |
Quelle | Base Score | Exploit Score | Impact Score | Vector String |
---|---|---|---|---|
nvd@nist.gov | 6.4 | 10 | 4.9 |
AV:N/AC:L/Au:N/C:P/I:P/A:N
|
CWE-287 Improper Authentication
When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.