cve/2019/CVE-2019-10710.md
2024-06-18 02:51:15 +02:00

835 B

CVE-2019-10710

Description

Insecure permissions in the Web management portal on all IP cameras based on Hisilicon Hi3510 firmware allow authenticated attackers to receive a network's cleartext WiFi credentials via a specific HTTP request. This affects certain devices labeled as HI3510, HI3518, LOOSAFE, LEVCOECAM, Sywstoda, BESDER, WUSONGLUSAN, GADINAN, Unitoptek, ESCAM, etc.

POC

Reference

Github

No PoCs found on GitHub currently.