cve/2019/CVE-2019-13336.md
2025-09-29 21:09:30 +02:00

1010 B

CVE-2019-13336

Description

The dbell Wi-Fi Smart Video Doorbell DB01-S Gen 1 allows remote attackers to launch commands with no authentication verification via TCP port 81, because the loginuse and loginpass parameters to openlock.cgi can have arbitrary values. NOTE: the vendor's position is that this product reached end of life in 2016.

POC

Reference

Github

No PoCs found on GitHub currently.