mirror of
https://github.com/0xMarcio/cve.git
synced 2025-05-28 01:04:30 +00:00
901 B
901 B
CVE-2019-10710
Description
Insecure permissions in the Web management portal on all IP cameras based on Hisilicon Hi3510 firmware allow authenticated attackers to receive a network's cleartext WiFi credentials via a specific HTTP request. This affects certain devices labeled as HI3510, HI3518, LOOSAFE, LEVCOECAM, Sywstoda, BESDER, WUSONGLUSAN, GADINAN, Unitoptek, ESCAM, etc.
POC
Reference
- https://dojo.bullguard.com/dojo-by-bullguard/blog/cam-hi-risk/
- https://dojo.bullguard.com/dojo-by-bullguard/blog/cam-hi-risk/
Github
No PoCs found on GitHub currently.